For ASE to start, the ase_master.key must be present in the /opt/pingidentity/ase/config directory. If you have moved the master key to a secured location for security reasons, copy it to the config directory before executing the start script.

Before starting ASE, make sure that nofile limit in /etc/security/limits.conf is set to at least 65535 or higher on the host machine. Run the following command on the ASE host machine to check the nofile limit:
ulimit -n
You can start ASE in one of the following two ways:
  • Using service script available in the util directory, or
  • Using the script available in the bin directory.

Start ASE as a service

Complete the following steps to start ASE as a service:
  1. Navigate to the util directory and run the following command to install ASE as a service:
    #sudo ./ pi-ase
  2. Start the service by entering the following command:
    systemctl start pi-ase.service

Start ASE using script

Change working directory to bin and run the script.

Starting API Security Enforcer 5.0...
please see /opt/pingidentity/ase/logs/controller.log for more details

Stop ASE using

Change working directory to bin and run the script.

/opt/pingidentity/ase/bin/ -u admin –p admin
checking API Security Enforcer status…
sending stop request to ASE. please wait…
API Security Enforcer stopped

Stop ASE using service script

Run the following command to stop the ASE service:
systemctl stop pi-ase.service