cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1845
Views
0
Helpful
2
Replies

Import Server Certificates on ACS 5.2

hanwucisco
Level 1
Level 1

When I tried to import the file, there are two lines there,

One is Certificate file, the other is for "Private Key File".

My question for you is, is this the private key of CA? My understanding has always been that the private key stays in CA only, not going to any other devices.

Please correct me if i am wrong.

thanks,

Han

1 Accepted Solution

Accepted Solutions

camejia
Level 3
Level 3

Hello Han,

When you received the Identity Certificate to be installed on the ACS did you generated a Certificate Signing Request (CSR) first on the ACS?

If yes, you should be installing the received certificate under the following section:

System Administration > Configuration > Local Server Certificates > Local Certificates > Click “Add” > Select Bind CA Signed Certificate

You are probably using Import Server Certificate instead of Bind CA Signed Certificate.

Let me know if this helps.

Regards.

System Administration > Configuration > Local Server Certificates > Local Certificates > Click “Add” > Select Bind CA Signed Certificate > Click “Next” > Browse to the ID Certificate

View solution in original post

2 Replies 2

camejia
Level 3
Level 3

Hello Han,

When you received the Identity Certificate to be installed on the ACS did you generated a Certificate Signing Request (CSR) first on the ACS?

If yes, you should be installing the received certificate under the following section:

System Administration > Configuration > Local Server Certificates > Local Certificates > Click “Add” > Select Bind CA Signed Certificate

You are probably using Import Server Certificate instead of Bind CA Signed Certificate.

Let me know if this helps.

Regards.

System Administration > Configuration > Local Server Certificates > Local Certificates > Click “Add” > Select Bind CA Signed Certificate > Click “Next” > Browse to the ID Certificate

thanks, The other post you answered, I have to wait.

Han