Thursday, November 23, 2017

Viewing and Creating Certificates

You may also need to view internal certificates or create new ones, which are needed to provide secure connections using SSL and signed documents. Use Certificates in the Administration > Administration > Certificates block to view internal certificates and create new ones. These certificates are signed by a certification authority and are usually commercial so the certificates are trusted by the browser.

  • The application stores the file system certificates and the corresponding private keys with their pass-phrase, as well as some meta information.
  • Any internal certificates are automatically created during installation and they cannot be modified.


  • The Certificate and Private key fields are used to upload a certificate and private key file in PEM format. It is automatically emptied after saving and the content is stored in the file system.
  • When a new instance is created, a certificate must be uploaded; however, when updating an existing instance of this class, it is not necessary to upload the certificate.
  • The private key field uploaded is an encrypted private key with pass-phrase. A private key is optional, but it is necessary for certain purposes such as server certificates or signing documents.
    • When you upload a private key file, enter the pass-phrase at the Pass-phrase field. The field is automatically emptied when saving the information.
  • Fields such as the Distinguished name, Valid from, and Valid until fields are for display purposes only and cannot be changed.
  • When you select an instance of the host class, the certificate is only installed on the server selected at the Server field. This is beneficial for SSL server certificates because their content is specific to the server’s network address.
    • If a server is not selected, the certificate is copied to all servers of the cluster. This is beneficial for SSL client certificates and for certificates used for signing documents because this should work on all servers in the same way.
    • This field is only available when creating a new instance of the certificate class.


CA certificates


When you use self-created certificates (for test purposes), you must attach your own CA certificates to the certificate you want to use. Use Certificates of Certification Authorities in the Administration > Administration > Certificates block. To edit, click the pencil icon for the CA certificate in the List of CA Certificates page.

It is important to note, that the internally used CA certificate (CA) automatically created during installation cannot be edited only viewed.


  • The CA Certificate field is used to upload a certificate file in PEM format. It is automatically emptied after saving and the content is stored in the file system.
  • After a CA certificate is defined, it is available when defining certificates using the Certificates function at the CA Certificates field.



-
Sage X3 and Sage Software are trademarks of Sage Software, Inc. Microsoft SQL Server, Microsoft SQL Enterprise Manager and SQL Server Management Studio are registered trademarks of Microsoft Corporation. Oracle is is a registered trademark or Oracle Corporation. All other product names used here are trademarks or registered trademarks of their respective owners.
-