09.07.2015 Views

Firebox SSL VPN Gateway Administration Guide - WatchGuard ...

Firebox SSL VPN Gateway Administration Guide - WatchGuard ...

Firebox SSL VPN Gateway Administration Guide - WatchGuard ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Administering the <strong>Firebox</strong> <strong>SSL</strong>Secure Access users will see security warnings unless you installa certificate that is signed by a Certificate Authority on the <strong>Firebox</strong><strong>SSL</strong> and a corresponding certificate on <strong>VPN</strong> users’ computers.Users can also disable the Security Alert through the SecureAccess Connection Properties dialog box.Overview of the Certificate Signing RequestIf you are unfamiliar with generating a CSR, review this sectionfor background information.The general process for generating a CSR and handling thesigned certificate is as follows:1 Generate a CSR (public.csr) and private key (private.key) asdescribed in “Generating a CSR” on page 33.2 Send the public.csr file to an authorized certificate provider.3 If you used a tool other than the Cygwin UNIX environmentto generate the CSR, check the format of the private key. Ifit is in DER format or is encrypted, convert it to PEM formatas described in “Unencrypting the Private Key” on page 34.4 When you receive the signed certificate file from your <strong>SSL</strong>certification company, check the file format. If it is not inPEM format, convert it as described in “Converting to aPEM-Formatted Certificate” on page 35.5 Combine the PEM-formatted signed certificate with thePEM-formatted private key (private.key) as described in“Combining the Private Key with the Signed Certificate” onpage 36.6 If your certificate has more than one level, handle theintermediate certificates as described in “GeneratingTrusted Certificates for Multiple Levels” on page 37.7 Upload the certificate to the <strong>Firebox</strong> <strong>SSL</strong> as described in“Uploading a Certificate to the <strong>Firebox</strong> <strong>SSL</strong>” on page 38.32 <strong>Firebox</strong> <strong>SSL</strong> <strong>VPN</strong> <strong>Gateway</strong> <strong>Administration</strong> <strong>Guide</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!