Importing SmartZone as Client Certificate

When you have an SSL certificate issued by the certificate provider, you can import it into the controller and use it for HTTPS communication.

To complete this procedure, you will need the following:

  • The signed server certificate
  • The intermediate CA certificate (at least one)
  • The private key file
Note: The file size of each signed certificate and intermediate certificate must not exceed 8192 bytes. If a certificate exceeds 8192 bytes, you will be unable to import it into the controller.

To import a signed server certificate, perform the following:

  1. Copy the signed certificate file, intermediate CA certificate file, and private key file to a location (either on the local drive or a network share) that you can access from the controller web interface.
  2. Click Administration > System > Certificates > SZ as a Client Certificate.

    This displays SZ as a Client Certificate page.

    SZ as Client Certificate

  3. Click Import, this displays Import Client Certificate page.

    Import client Certificate

  4. Enter the following:
    • Name: Type a name to identify the certificate.
    • Description: Enter a short description about the certificate.
    • Client Certificate: To upload any of the options in this section, select the corresponding check box, click Browse and select the location in your local system and upload the certificate.
      Note: For Intermediate CA certificates, if you want to upload additional intermediate CA certificates to establish a chain of trust to the signed certificate, you can select up to four certificates. Only CRT or PEM format is supported for the CA certificate.
      Note: If you are using this SSL certificate for a Hotspot 2.0 configuration, you must also import a root CA certificate.
      Note: Private Key can be imported through uploading file or using Customer Signing Request (CSR).
  5. Click OK.

You can also edit, clone or delete the profile by selecting the options Configure, or Delete from the SZ as Client Certificate page.