Importing and creating certificates

Procedure

On the NETWORK menu, under the VPN submenu, click Certificates.

  • To import a certificate, under the Import certificates section, enter the Password that was specified when the certificate was created:
    • To import a certificate in PKCS#12 format:
      1. From Import PKCS#12 filename, click Choose File.
      2. Locate the relevant certificate and click Open.
      3. Click Import certificate and key from PKCS#12.
    • To import a certificate in PEM format:
      1. From Import PEM filename, click Choose File.
      2. Locate the relevant certificate and click Open.
      3. Click Import certificate from PEM.
  • To create a new signed certificate:
    1. Under the Create new signed certificate section, select the certificate’s ID type and enter an ID value, for example, a host name or an email address.
    2. Enter a Common name for the certificate, for example, Head Office and an optional administrative Email address for the certificate owner.
    3. Enter an Organization and Department identifier for the certificate owner.
    4. Enter a Locality or town and a State or province for the certificate owner.
    5. Enter a two-letter Country code, for example, US or UK, for the certificate owner.
    6. From the Lifetime list, select the length of time that the certificate is valid for.
      • If you select "User defined" from the Lifetime list, in User define (days) you need to enter the number of days the Certificate Authority is valid.
    7. Click Create signed certificate.

Follow-up tasks

  • To review an installed signed certificate:
    1. Under the Installed signed certificates section, find the certificate that you want to view.
    2. Click the certificate name. The content appears in a new browser window.
    3. Close the browser window to return to the Smoothwall.
  • To export an installed signed certificate:
    1. Under the Installed signed certificates section, select the certificate that you want to export.
      • To export in the PKCS#12 format:
        • Enter a Password and Again and then click Export certificate and key as PKCS#12.
        • Choose to save the PKCS#12 container file (a .p12 file) to disk in the dialog box launched by your browser software.
      • To export in any other format:
        • From the Export format list, select the format that you want and click Export.
        • Choose to save the certificate file (a .pem or .der file) to disk in the dialog box launched by your browser software.

    Note: Distribute the certificate to its recipient host in a secure manner because it contains the private key that should only be known by the certificate owner.

  • To delete a certificate, under the Installed signed certificates section, select the certificate that you want to delete and click Delete.