Certificate of Directors HTTPS UTM10/UTM25/UTM50

I went through the various threads for the last 45 minutes and come away with little help in obtaining the certificate in administration https standard should be replaced with a valid. I have a new certificate from StartSSL.

Currently I use the firmware version: 1.3.15.28
Models: UTM10/UTM25/UTM50

I followed these steps:

Application security > HTTP/HTTPS > managing certificates

I downloaded the PKCS12 certificate and selected the option 'use imported Cert. The certificate shows all the correct information, but this section seems to be ONLY for the scanning of HTTPS. I'm looking to replace the cert of NetGear default with my valid certificate for the administration.

My users connect to the SSL VPN and continually get messages "invalid certificate". While we have trained to go ahead in any case, I prefer my valid certificate loaded and make it right.

Where ELSE do I need to import this certificate for using it for administration of HTTPS?

So I spent some time speaking with people Netgear support and here is the General procedure for the certificate of work for the administration:

VPN > certificates

To half way down on the page is the section 'generate Self' application for a certificate. Please complete this section. The example illustrates the use of the OU =, CN =, etc.. but I have found that those who are not needed. I filled the area "Name" with the URL to the firewall (i.e. firewall.xyz.com) and the box 'Topic' with the name of the company (e.g., XYZ Corp. Inc..)

According to the certificate provider (I used the StartSSL CA as they provide server certificates which last a year free), you will need specify hash algorithms and short lengths. StartSSL, you choose SHA1 and 2048 bits. I have NOT filled in the e-mail fields (which are marked as optional), domain name or IP address.

Press the "Generate" button and the firewall will create demand. Click on the button "View" next to demand newly created in the section "requests for certificate itself. That will bring up the text for the "CSR" - auto certificate request. Copy and paste this into the StartSSL CSR application on their site to generate the current certificate.

Once StartSSL generates the certificate, you must download in text format. Then return to the UTM firewall and VPN > certificates page, go to the section "Request for certificate of self" and under the list of applications is a box to select a file to download against one of the requests. Choose the file that you downloaded from StartSSL and download it.

Once it has been downloaded, you should see a new list in the section "active certificates of itself".

So far so good. Now, you have to RESTART the UTM so he can use the new SSL certificate that you downloaded. Once you have restarted, connect you to the administration page and you will notice that you will not have to bypass the message about the certificate expired or invalid.

I hope this helps!

Tags: Netgear

Similar Questions

Maybe you are looking for