The and tokens are offline
In /etc/openxpki/config.d/realm/ca-one/crypto.yaml, change the certificate key password.
Create correct symlinks and copy the key fileFor more information, see Copying the key file and creating a symlink.
Make sure that the key file is readable by OpenXPKI