Importing an SSL certificate chain into StruxureWare DCE prevents the web server from starting, making the StruxureWare DCE unable to boot.
Product Line
StruxureWare Data Center Expert (DCE)
- Standard Appliance (AP9470)
- Enterprise Appliance (AP9475)
- Virtual Appliance (AP94VMACT)
InfraStruXure Central (ISXC)
Environment
StruxureWare Data Center Expert (all versions)
StruxureWare Central (all versions)
InfraStruXure Central (all versions)
Cause
StruxureWare DCE supports importing standard SSL certificates signed by the root certificate authority only. SSL certificates that describe a chain of certificate authorities are not supported.
Resolution
StruxureWare DCE supports importing standard SSL certificates signed by the root certificate authority only. SSL certificates that describe a chain of certificate authorities are not supported.
A. If you have already imported the SSL certificate chain and your StruxureWare DCE server will not boot, you must call Technical Support for assistance.
B. If you have not yet imported the SSL certificate chain, you must create a new certificate signing request (CSR) in the StruxureWare DCE client; manually edit the *.pem file you received from your certificate signing authority to access its individual certificates; and add each certificate to StruxureWare DCE individually as shown below in step 4:
C: If you have not created a Certificate Signing Request, follow these steps:
1. Create a certificate signing request:
In the StruxureWare DCE client, navigate to the Web Server tab in the “Server Access” display, accessed from Server Administration Settings in the System menu.
Select Modify Certificate.
Select Create Certificate Signing Request (CSR) and specify the parameters.
Click Next. Maximize the window to display the entire certificate request, from ---BEGIN CERTIFICATE REQUEST--- to ---END CERTIFICATE REQUEST---
Copy the entire certificate and provide it to your certificate signing authority.
2. Once you receive the *.pem file from your certificate signing authority, open it in a text editor, and note the individual certificates.
3. Pull each certifcate out individually in a plain text editor (Root, Intermediary and certifcate issued directly to Data center expert)
4. Add the Root certifcate under System>Server Administration Settings>Server SSL Certificates
5. Add the Intermediary and any other certificate expect the certificate issued to DCE under the same menu, System>Server Administration Settings>Server SSL Certificates
6. Load the certificate issued directly to Data center expert under System>Server Administration Settings>Server Access>Web Server Tab>Modify Certificate>Add certificate
7. The server will then reboot
Publié pour: Schneider Electric Algeria


Besoin d'aide ?
Commencez ici !
Trouvez des réponses dès à présent Rechercher une solution par vous-même ou contacter l'un de nos experts.
Contactez le support
Contactez notre équipe du service client pour obtenir plus d'informations, un support technique, une assistance en cas de plaintes, etc.
Où acheter ?
Trouvez facilement le distributeur Schneider Electric local le plus proche.
Parcourir la FAQ
Obtenez les réponses dont vous avez besoin en parcourant la foire aux questions (FAQ) par sujet.
Contacter le service commercial
Effectuez une demande de renseignements en ligne et un expert vous contactera.