Using trusted certificates on Security Center servers (Advanced) - To strengthen the security of your system, you should replace the self-signed certificate on your Security Center servers with one issued by a trusted certificate authority (CA). - Security Center 5.12

Security Center Hardening Guide 5.12

Product
Security Center
Content type
Guides > Administrator guides
Version
5.12
ft:locale
en-US
Last updated
2024-12-17

To strengthen the security of your system, you should replace the self-signed certificate on your Security Center servers with one issued by a trusted certificate authority (CA).

Before you begin

When installing Security Center, on the Security Settings page of the InstallShield, select Always validate the Directory certificate.

Procedure

  1. Open Genetecâ„¢ Server Admin.
  2. From the Servers list, select your server.
  3. In the Secure communication section, click Select certificate.
  4. Choose a certificate and click Select.
    Select certificate dialog box in Server Admin showing a list of certificates to choose from.
  5. Click Save.
    IMPORTANT: If the client machine does not trust the selected certificate, a dialog box appears when users attempt to log on. This informs them of the untrusted connection and provides the following options:
    • Proceed and do not ask again (not recommended)
    • Cancel logon

    There is also a link to View certificate details to help understand why the certificate is not trusted.

    We recommend using a certificate that all client machines trust. If the Invalid certificate warning is unexpected, ensure that you understand why the certificate is not trusted before proceeding.

Example

Watch this video to learn more. Click the Captions icon (CC) to turn on video captions in one of the available languages.