This document provides information on how to publish a certificate. Once a certificate is signed, it can be published on the desired device through Segura®, which will verify the authenticity and integrity of the information and transactions carried out.
Info
- You can publish certificates only on devices registered in Segura®.
- Segura® supports the following publishing profiles: Apache, Tomcat, Nginx, IIS, Kubernetes, Netscaler, IBM Websphere, F5 BigIP, and Palo Alto.
Requirements
- A valid certificate.
- Manually imported certificates must include their respective keys.
- When using the NetScaler as the publishing profile, the certificate must have at least a 6-character password.
Publish a certificate
To publish a certificate, see the following steps:
- On Segura®, in the navigation bar, hover over the Products menu and select Certificate Manager.
- In the side menu, select Certificates > SSL/TLS.
- In the desired certificate, click Actions > Publish certificate.
- In the General tab, enter the following information:
- In the Reason * field, select a reason for publishing the certificate.
- In the Governance Code field, enter a governance code.
- In the Publishing profile field, select the publishing profile.
- In the Create a new publishing profile field, select to create a new publishing profile.
- In the Publication profile name field, enter a name for the new publishing profile. This field is only available after selecting the Create a new publishing profile checkbox.
- In the Publishing plugin, select the publishing profile. This field is only available after selecting the Create a new publishing profile checkbox.
- In the Justification field, enter a justification for publishing the certificate.
- In the Use a registered credential to access all devices field, select to use a registered credential to access all devices.
- In the Access credential registered in the system field, select the registered credential to be used. This field is only available after selecting the Use a registered credential to access all devices checkbox.
- In the Credential username field, enter a username as the credential.
Info
The system will find this username in all registered devices to authenticate, therefore, the device must have a credential with the same username entered here.
- Click Continue.
- In the publishing profile tab, enter the information accordingly to the profile selected in step 4.. For more information on each profile, see Publishing profiles.
- In the Servers tab, click + Add to select the servers where the certificate will be published.
- Select the desired servers, and click Add.
AttentionEnsure that the credential selected in the General tab can connect to the chosen servers.
- Click Continue.
- (Optional): In the Schedule tab, enter the following information about publication schedule:
- In the Enabled field, select to schedule to publication.
- In the Date and time of publication field, schedule the date and time of the publication. This field is only available after selecting Yes in the Enabled field.
- Click Continue.
- In the Review tab, review all information enter previously, and click Save.
The newly published certificate will appear on the SSL/TLS certificates report screen.
Do you still have questions? Reach out to the Segura Community.