Appendix
B
SSL server certificate
management
This chapter includes the following topics:
■
■
Installing a certificate authority
■
■
■
Installing a signed certificate
About SSL certificates
The security gateway’s Clientless VPN uses the Secure Sockets Layer (SSL) protocol to authenticate
and encrypt client connections. SSL relies on X.509 certificate technology, and the security gateway is
shipped with an unsigned certificate to facilitate the basic operation of this feature. For enhanced
security and improved user experience, you can install a self-signed certificate (one that is signed by
the gateway itself) on the gateway. You can also request that a certificate be signed by a third-party
certificate authority (CA) and install third-party certificate authorities on the gateway to facilitate
certificate verification in your network.
Installing a certificate authority
The SSL Server Certificate tab contains a list of Certificate Authorities (CAs). To populate this list, you
must install third-party certificates and add them to the list.
Prerequisites
None.
To install a Certificate Authority
1
Open a Web browser window.
2
Browse to a third-party certificate authority Web site and copy a certificate.
3
Paste the certificate on your desktop.
4
Log on to the security gateway
5
In the Security Gateway Management Interface (SGMI), in the left pane, under System, click
Configuration
.
6
In the right pane, on the SSL Server Certificate tab, click
Add
.
7
In the Open dialog box, navigate to your desktop and click on the certificate.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...