Configuring with Web Based Management
4.9 Security
SINEMA Remote Connect - Server
Operating Instructions, 11/2017, C79000-G8976-C383-04
91
4.9.1.4
Server certificate
Calling the Web page
In the navigation panel, select "Security > Certificate management".
Displayed entries
In the "Web server certificate" and "VPN server certificate" tabs, you can see an overview of
the certificates:
Box
Meaning
Serial number
Number to identify the certificate. The serial number is automatically incremented by
one when the certificate is created.
Common name
The name is adopted from the network configuration:
•
The DNS name when you have activated the option "Externally resolvable host
name" and have entered a value (see section "DNS (Page 51)").
•
The IP address of the WAN or LAN interface, see section "Interfaces (Page 49)".
Issuer
Display of the certificate authority that issued the certificate.
Valid from
Date from which the certificate is valid.
Valid to
Date on which the certificate expires.
Key length (bits)
Key length that was set in "Settings" when this certificate was generated.
Signature method
Signature method with corresponding signature key ("hash value") that was set in "Set-
tings" when this certificate was generated.
SHA1 fingerprint:
Fingerprint with SHA1 as hash algorithm
SHA256 fingerprint
Fingerprint with SHA256 (SH2) as hash algorithm
Alternative names
•
IP: The IP address of the WAN interface, see section "Interfaces (Page 49)".
•
IP: The WAN IP address when you have activated the function "SINEMA Remote
Connect is located behind a NAT device" and have entered an IP address, refer to
the section "Interfaces (Page 49)".
•
DNS: The DNS name when you have activated the option "Externally resolvable
host name" and have entered a value (see section "DNS (Page 51)").
Renewing the Web server certificate and VPN server certificate
With the "Renew" button, you can when necessary, e.g. with compromised certificates,
generate a new certificate. The certificates are derived from the currently valid CA certificate.
The serial number is automatically incremented by one.
Importing the Web server certificate
With the "Import" button, you can import CA certificates for the encryption of the data traffic.