Configuring with Web Based Management
4.9 Security
SINEMA Remote Connect - Server
94
Operating Instructions, 11/2017, C79000-G8976-C383-04
4.9.1.6
Making settings for certificates
Calling the Web page
In the navigation panel, select "Security > Certificate management".
Changing settings
The changes made in the "Settings" tab are used only used when renewing the server
certificate: The changes do not apply to existing certificates. On the tabs "Web server
certificate" and "VPN server certificate" you can use the "Renew" button to generate a new
server certificate.
Box
Meaning
Preferred key length (bits)
Select the number of bits of the various possible keys for the procedure.
Preferred hash method
Select the hash method for the certificate: SHA256 or SHA512
CA certificate renewal (days
before expiry)
Specify how many days before it expires the certificate will be automatically renewed.
As default, the CA certificate of the server is valid for 10 years. If, for example, you
specify 365 days, a new CA certificate will be generated after 9 years.
The previous CA certificate is then "Out of service" but is valid for another 365 days.
The clients that use this CAA certificate can continue to log on with it for another 365
days. After this time, the CA certificate counts as being "Expired" and the clients need
to use the new CA certificate.
Validity of client certificates
(days)
Specify for how many days the certificate will be valid. A certificate whose CA has al-
ready expired can no longer be used.