Configuring the Appliance
33
To generate a certificate request
1.
While still connected to the appliance with a network cable, enter
https://<SSL VPN Administrator IP Address>:8443
as
the address in your web browser.
2.
Click either the
For Windows
or
For Linux
link according to your
operating system to download certificate-related tools to your
workstation. Save the archive on your local workstation.
3.
Extract all files in the archive to the same location.
4.
Open a command line and run the makecsr script that was
extracted from the archive.
5.
Fill in the required details. Information on creating a certificate
signing request can be found in the
SSL VPN Administrator’s Guide.
The following files are generated:
•
server.csr
: the certificate request file that is used to
generate the actual certificate.
•
private.pk8
: the private certificate key that you must import
to the SSL VPN Administrator.
•
private.key
: the private certificate key in an alternative
format. You can delete this file.
6.
Send the server.csr certificate request for signing to the
certificate authority or sign it using an internal certificate authority
(CA) that you maintain.
2