Certificate Folder
When the Web Server Protocol is configured to use HTTPS communications, all web-server
communication with all browsers is encrypted and validated based upon the security algorithms and
validity checks specified in the SSL certificate that is currently-installed in the card. By default, the card
generates its own unique, self-signed SSL certificate when it is first powered up. However, many
installations want to install and use SSL certificate files that were generated by their own Certificate
Authority (CA).
Selections in Certificate provide commands to Upload SSL Certificate PEM Files or Generate Self-Signed
SSL Certificate.
Certificate Commands
Upload SSL Certificate PEM Files
Uploads and installs a PEM-encoded SSL key file and certificate file that were generated by a
trusted Certificate Authority and that conform to the Apache
mod_ssl
module’s SSL
CertificateKeyFile and SSLCertificateFile directives. See
Uploading SSL Certificate PEM Files
NOTE: For more information on Apache’s use of SSL certificates,
see
http://httpd.apache.org/docs/2.4/mod/mod_ssl.html#sslcertificatefile
Generate Self-Signed SSL Certificate
Generates and installs a new self-signed certificate based on the mode selected for Generate Self-
Signed SSL Certificate Mode. See
Generating a Self-signed SSL Certificate
Certificate Settings
Generate Self-Signed SSL Certificate Mode
Method used to generate a self-signed SSL certificate. Options are:
•
Use Default Values = the values used in place of the user-configurable fields are the same as
those used when the original SSL certificate was generated by the card on first power-up. The
default values are not displayed.
•
Use Configured Settings = the user-entered values in the configurable fields are used to
generate the certificate.
NOTE: When using configured settings, all of the configurable fields, described below, must have an
entry to successfully generate a certificate.
Common Name
Fully-qualified domain name that browser clients will use to reach the card’s web server when it is
running with the certificate generated with the name entered here.
Organization
Organization or company identified as the owner of the generated certificate.
6 Editing the Unity Card Configuration
41