How to configure NetScaler

Prev Next

This document provides information on how to configure the NetScaler publishing profile so that it's possible to install and publish certificates on the server.

During the NetScaler publishing profile configuration, it's possible to define the path for certificate storage, along with the ability to bind the certificate with virtual servers, service groups, and services.

It's also possible to configure the following options:

  • SNI: enables the use of multiple SSL certificates on the same IP address.
  • OCSP: performs real-time certificate validations that verify the certificate revocation status.
  • CRL: provides a list of revoked certificates, which is downloaded and stored in local cache, being updated periodically.

Configure NetScaler

To configure NetScaler, see the following steps:

  1. On Segura® Platform, in the navigation bar, hover over the Products menu and select Certificate Manager.
  2. In the side menu, select Publishing > Publishing profiles.
  3. In the Actions button, select NetScaler.
  4. In the Settings tab, enter the following information:
    1. In the Profile name *, enter the profile’s name.
    2. In the Credential username, enter the credentials’ name.
    3. Optional: Check the Use a registered credential to access all devices option and, in the Access credential registered in the system, select the access credential registered in Segura® Platform to be used.
  5. Click Continue.
  6. In the NetScaler tab, enter the following fields:
    1. In the File path to save the certificate field, enter the repository path where the certificate will be stored.
    2. Between the SSL services presented (Virtual servers, Service groups, and Services), add at least one service so the certificate can be bound to it.
      Info
      • The Name field in the Virtual servers, Service groups, and Services sections must have the same name registered in NetScaler.
      • If both OCSP and CRL options are enabled, OCSP will take precedence.
      • If the OCSP option is enabled, SNI won’t work.
  7. Click Continue.
  8. In the Devices tab, select the NetScaler server.
    1. The device must be previously registered in Segura® Platform.
  9. In the Review tab, review all information entered previously, and click Save.