Enabling HTTPS with a Server Certificate
The following are the steps to follow to obtain and install a server certificate, and verify that it
works.
1. Generate a Server Certificate Signing Request or a Self-Signed Server Certificate.
To get a server certificate, do one of the following:
a.
Create a Certificate Signing Request (CSR) and send it to a Certificate
Authority for signing
. This provides the highest level of trust to the client, as
the client can be assured that the certificate it receives from the server (in this
case, Equalizer) was approved (i.e., digitally signed) by a trusted third party.
Thus, the client has the assurance of a third party that the server to which it is
connecting is identifying itself legitimately (and is not impersonating the legit-
imate server’s identity). See
"Generating a CSR and Getting It Signed by a CA"
b.
Create a certificate and sign it yourself
. This provides a lower level of
trust, since the client is essentially trusting the server to identify itself. Self-
signed certificates are relatively easy to counterfeit, and are only recom-
mended for use on internal, non-production, or test configurations. See
erating a Self-Signed Certificate"
2. Create the HTTPS cluster.
When creating an HTTPS cluster, the default flags and parameters are acceptable for most
server certificate configurations.
For more information on SSL parameters, see the section
3. Install the Server Certificate on Equalizer. See the section
"Layer 7 Security Certificate Screen
4. Try connecting to the Cluster via HTTPS.
From a client browser, open
https://cluster
, where
cluster
is the network node name or IP
address of the HTTPS cluster. The browser may notify you that it is accepting a certificate
from the server and ask for confirmation.
Once you accept the certificate, the requested page should be displayed.
Copyright © 2014 Coyote Point Systems, A Subsidiary of Fortinet, Inc.
All Rights Reserved.
817
Equalizer Administration Guide
Содержание Equalizer GX Series
Страница 18: ......
Страница 32: ...Overview 32 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Страница 42: ......
Страница 52: ......
Страница 64: ......
Страница 72: ......
Страница 76: ......
Страница 123: ...Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc All Rights Reserved 123 Equalizer Administration Guide ...
Страница 228: ......
Страница 238: ......
Страница 411: ...Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc All Rights Reserved 411 Equalizer Administration Guide ...
Страница 459: ...Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc All Rights Reserved 459 Equalizer Administration Guide ...
Страница 476: ......
Страница 492: ......
Страница 530: ......
Страница 614: ......
Страница 626: ......
Страница 638: ......
Страница 678: ......
Страница 732: ...Using SNMP Traps 732 Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc ...
Страница 754: ......
Страница 790: ......
Страница 804: ......
Страница 842: ......
Страница 847: ...Copyright 2014 Coyote Point Systems A Subsidiary of Fortinet Inc All Rights Reserved 847 Equalizer Administration Guide ...
Страница 866: ......