Grid eXchange Fabric Documentation

  Fix This Page

Add a new organisation

Adding an Organisation to the platform

This chapter describes how to add a new Organisation to the platform. This includes creating a certificate for the new organisation.

Creating an Organisation

In SoapUi go to DeviceManagement under the Admin project. Click on request 1 under CreateOrganisation. Fill in the parameters like the example request below. Make sure to sign the request with the test-org.pfx and to use the test-org organisation in the request header.

This request creates a new organisation called "my-org":


   
      APPLICATION_NAME
      USER_NAME
      test-org
   
   
      
         
            
            my-org
            
            my-org
            
            MYO
            
            ADMIN
            
            true
            
            
            COMMON
            PUBLIC_LIGHTING
         
      
   

Authorise the new Organisation for the device

To use this new organisation to control the SSLD_000-00-01 device, the authorisations need to be updated. To do that the UpdateDeviceAuthorisations request will be used, it can be found under DeviceManagement in the admin project.

Fill in the parameters like shown below. The functionGroup will be set to AdHoc to authorise the 'my-org' organisation for the AdHoc functions.

Make sure to use the test-org as OrganisationIdentification in the request header, and to sign the request with the test-org.pfx.


   
      AAPLICATION_NAME
      USER_NAME
      test-org
   
   
      
         
         
            
            SSLD_000-00-01
            
            my-org
            
            AD_HOC
            
            
         
      
   

Creating a certificate for the new organisation

Now that the 'my-org' organisation is authorised to use the SSLD_000-00-01 device, it is time to create a certificate for the my-org organisation. This certificate will be used to sign the requests.

Open a terminal and navigate to /home/dev/Sources/OSGP/Config/certificates/

A script has been created to create the certificates, execute it by running the following command in the terminal:

./create_client_cert.sh my-org 1234 1234

You should receive similar output as shown in the screenshot below.

alt text

Now that the certificate has been created, restart the tomcat server.

Signing a request with the new certificate

When the tomcat server is up and running again, go to SoapUi and add the new certificate to the public-lighting project: double-click on the project, go to the WS-Security Configurations tab and select the keystores tab. Click the '+' button and browse to the my-org.pfx certificate which can be found in /home/dev/Sources/OSGP/Config/certificates/osgp-ca/certs/

alt text

Now double-click on 'Request 1' in SetLight in PublicLightingAdHocManagement in the public-lighting project. Set the SSL Keystore to 'my-org.pfx' in the request properties so the request gets signed with the new certificate. Change the request parameters as shown in the example below:


   
      APPLICATION_NAME
      USER_NAME
      my-org
   
   
      
         
         SSLD_000-00-01
         
         
            
            
            0
            
            true
            
            
            50
         
      
   

Note the OrganisationIdentification is now set to 'my-org'. Send the new request, you should receive the following response:


   
   
      
         
            my-org|||SSLD_000-00-01|||20160805150420802
            SSLD_000-00-01
         
      
   

Check the device-simulator to see if the dimValue of the SSLD_000-00-01 changed to 50.

You now have successfully created a new organisation, along with a certificate to sign the requests, and changed the device authorisations of the device to accept commands from the new organisation.