Publish a signed certificate to a device registered in Segura®. Segura® verifies the certificate's authenticity and integrity during publishing.
Info
Segura® supports the following publishing profiles: Apache, Tomcat, Nginx, IIS, Kubernetes, Netscaler, IBM Websphere, F5 BigIP, Palo Alto, and CURL.
Requirements
- The device must already be registered in Segura®.
- A valid certificate.
- Manually imported certificates must include their respective keys.
- When using the NetScaler as the publishing profile, the certificate must have at least a 6-character password.
Publish a certificate
- On Segura®, in the navigation bar, hover over the Products menu and select Certificate Manager.
- In the side menu, select Certificates > SSL/TLS.
- In the desired certificate, click Actions > Publish certificate.
- In the General tab, enter the following information:
- In the Reason * field, select a reason for publishing the certificate.
- In the Governance Code field, enter a governance code.
- In the Publishing profile field, select the publishing profile.
- In the Create a new publishing profile field, select to create a new publishing profile.
- In the Publication profile name field, enter a name for the new publishing profile. This field is only available after selecting the Create a new publishing profile checkbox.
- In the Publishing plugin, select the publishing profile. This field is only available after selecting the Create a new publishing profile checkbox.
- In the Justification field, enter a justification for publishing the certificate.
- In the Use a registered credential to access all devices field, select to use a registered credential to access all devices.
- In the Access credential registered in the system field, select the registered credential to be used. This field is only available after selecting the Use a registered credential to access all devices checkbox.
- In the Credential username field, enter a username. The system matches it against credentials on the registered devices, so the device must have a credential with the same username.
- Click Continue.
- Optional: In the publishing profile tab, enter the information according to the profile selected in step 4.. For more information on each profile, see Publishing profiles.
- In the Servers tab, click + Add to select the servers where the certificate will be published.
- Select the desired servers, and click Add.
:::(Warning) (Attention) Ensure that the credential selected in the General tab can connect to the chosen servers. :::
- Select the desired servers, and click Add.
- Click Continue.
- Optional: In the Schedule tab, enter the following information about publication schedule:
- In the Enabled field, select to schedule to publication.
- In the Date and time of publication field, schedule the date and time of the publication. This field is only available after selecting Yes in the Enabled field.
- Click Continue.
- In the Review tab, review all information entered previously, and click Save.
The newly published certificate will appear on the SSL/TLS certificates report screen.