127
12.4 Certificates
12.4.1
Root CA
The configuration options in this menu are structured by topic. You can change between
the different screens by clicking on the tabs at the top.
12.4.1-A CA certificate................................................................... 127
12.4.1-B CA revocation list............................................................ 129
12.4.1-C SSL proxy CA................................................................. 130
12.4.1-A
CA certificate
Working with certificates in a closed group of users usually does not require certificates
issued by an official certification authority (CA). While an official CA will charge for a
certificate, you can create certificates for free with SX-GATE. On this screen you can
administrate the root certificate, which is sometimes also referred to as "CA certificate".
There's no pre-installed default CA certificate. On a new SX-
GATE you have to create one first.
The CA certificate is used to sign all certificates issued by SX-GATE. As it is the root
of the certificate trust chain any certificate based authentication relies on it. Therefore
the CA certificate is protected by a password which has to be entered for any operation
which involves the CA certificate.
For security reasons the CA certificate is not saved along with
the SX-GATE backup. Use the export function on this screen to
download and save a password protected copy.
Export public key
Here you can download the CA certificate's public key. Any applications using a CA
certificate based authentication need to know it.