Assign Certificates
There are two methods available for installing certificates. If SCEP is available, certificates can be generated and installed in one step. Without SCEP, there are multiple steps that need to be taken to create and install a certificate. Select one or more devices that on which you want to generate and install certificates.
Install Certificate via SCEP
Before using SCEP, refer to the SCEP Server Configuration to ensure it is configured correctly.
-
Select one or more device certificate slots that you want to generate and install certificates on.
-
From the [Certificate] menu, select [Combination Tasks] → [Generate and Install Certificate].
-
In the [Certificate Signing Request] screen, enter a Common Name, Organization, Organizational Unit, E-mail Address, City/Locale, State/Province, Country Code, and Algorithm Signature.
-
Click (OK) to continue. A CSR is generated and enrolled with SCEP to create a certificate, which is then installed on the device.
Install Certificate without using SCEP
-
Create Certificate Signing Requests (CSR).
- Select one or more device certificate slots that you want to create a CSR on.
- From the Certificate menu, select [Create CSR].
- In the [Certificate Signing Request] screen, enter a Common Name, Organization, Organization Unit, E-mail Address, City/Locale, State/Province, Country Code, and Algorithm Signature.
- Click (OK) to continue. A CSR is generated.
-
Create Certificate.
- Select one device certificate slot where a CSR was generated.
- From the Certificate menu, select [Local Tasks] → [Display CSR].
- Copy the [Certificate Data] and use it to create a certificate with your Certificate Authority. The certificate must be created Base 64 encoded.
-
Install the Certificate that was created by the Certificate Authority.
There are two mechanisms for associating and installing the certificate:
Associate the certificate using local tasks:
- Select the device certificate slot where the CSR for the generated certificate exists, and then locate the Certificate menu and select [Local Tasks] → [Associate Certificate to CSR].
- Import the certificate file or paste the contents into the [Associate Certificate to CSR] field and click (OK). The certificate is now associated with the CSR.
- From the [Certificate] menu, select [Install Certificate]. The certificate is installed.
-
Associate certificate using combination tasks, refer to Assign an Application for steps.