If you change your mind about obtaining an authoritatively signed public key certificate, or if you
need to make changes to your request, you can click the
Delete
Existing
CSR
button. This
deletes the Certificate Signing Request and removes the extra buttons from the HTTP Settings
screen.
3.7.8.2.4 Import and Export Certificate
Public Key Certificates are used for secure communications between your web browser and
your Bandura Cyber TIG. You can load a public key certificate file into your Bandura Cyber TIG,
or you can save the contents of the Bandura Cyber TIG's public key certificate through the
Import
Certificate
and
Export Certificate
buttons.
You can generate a Public Key Certificate on the Bandura Cyber TIG itself, as found in the
Generate
New Self-Signed
Certificate
or
Generate
CSR
screens. You can also create a new
certificate for the Bandura Cyber TIG on another computer. If that software can generate a
PKCS#12 format key file, you can upload it to the Bandura Cyber TIG using the
Import
Certificate
function.
When importing a certificate, click the
Browse
button to find the Key Certificate file on your local
computer, and enter the file's password. Click Import to load the keys into your Bandura Cyber
TIG. You need the Crypto
Admin Role to Import a certificate.
You may want to save
your Bandura Cyber TIG's public and private keys for safekeeping. This
may be useful in the future if you have to restore your Bandura Cyber TIG to its factory default
settings. Use the
Export Certificate
function to save the public key to a file on your computer.
When exporting a certificate, enter a password for the key certificate file, and re-enter the
password. Click
Export
to save the key certificate to your local computer. You must remember
this password, otherwise the key certificate file will be unreadable. This will save a PKCS#12
format key file on your local computer, with the file name
Bandura Cyber TIG-certs.p12
.
3.7.8.2.5 Upload CA Certificate
The Public Key Certificate system encrypts communications between the Bandura Cyber TIG
and administrators computers. This system can provide authentication services, giving you
confidence that remote computers are what they claim to be, and that those computers are
specifically authorized to connect to your Bandura Cyber TIG.
If you select
Require
Client
Certificates
on the HTTP
Settings
screen, then the Bandura Cyber
TIG will only accept connections from web browsers that have authoritatively signed public key
security certificates. Do
not
select
Require
Client
Certificates
until
you
have
followed all of the
instructions
in
this
section
, otherwise you will not be able to connect to the Bandura Cyber TIG,
and will have to use Maintenance
Mode
to reset your Bandura Cyber TIG.
68