During the upgrade of the External Indexer, the upgrade process displays a message recommending that the administrator run /usr/bin/indexer-certs-converter to migrate certificate/key configuration to the new format. When running this script as recommended, this results in the deletion of the private key that was present in /etc/indexer/indexer-keys.cfg.
STATUS
Change Request # 730624 was submitted to address this issue in a future release, subject to successful QA and Product Management approval.
WORKAROUND
if the administrator has the certificate and private key that was lost, you can add it again to the external indexer using the "indexer-keys-json" tool.
© 2026 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center