Certificate Management
The Certificate Management task allows you to generate a security certificate for use with Virtana Infrastructure Observability it uploads an update of. You can bypass the trusted security certificate warning by generating your own security certificate request and using that request to get a certificate signed by a certificate authority such as Verisign.
It is recommended that you generate your own security certificate and have it signed by the certificate authority of your choice.
Follow these steps to generate a security certificate for Virtana Infrastructure Observability.:
After Selecting a Signed Certificate Type from combo-box following 2 options would be displayed
A) "Generate Self Signed Certificate" and
B) "Upload Signed Certificate"
by default "Upload Signed Certificate" option is selected.
Steps for "Generate Self Signed Certificate"
From the Settings screen, click Certificate Management.
The Certificate Management screen is displayed.
Click Generate CSR to generate a certificate signing request.
The Generate CSR dialog box displays.
Enter the following information in the Generate CSR dialog box:
Table 20. Generate CSR Dialog ParametersParameter
Definition
Country
Two-letter ISO code for the country in which you are located. Required.
State
Province, region, county, or state in which you are located (no abbreviations). Required.
City
Name of the city in which you are located (no abbreviations). Required.
Company
Name of your company. Required.
Department
Name of your department or organizational unit. Required.
Server FQDN
Fully-qualified domain name for your organization. Required.
Email
Email address of the contact at your company, generally an administrator or the IT department.
Important
You must use a FQDN for Hostname in Appliance Network Settings.
Warning
Do not use backslash (\) or double quote (") character in the Certificate Management Request.
Click OK.
The Generate CSR dialog box disappears and you see a message is displayed indicating CSR generation as well as the date and time of the CSR’s generation.
Click the CSR to get the option to view or download the CSR.
Deliver the generated CSR to your certificate authority using your normal process.
After you get your certificate back from the certificate authority, follow these steps:
Complete the SSL Certificate by clicking Browse to find your SSL certificate. Concatenate the root certificate, all intermediate certificates, and the signed certificate into one file.
Click Upload to upload the certificate.
You are logged out of your UI session. In approximately one minute you are directed to the Virtana Infrastructure Observability Login screen.
Steps for Upload Signed Certificate
Browse/Upload the certificate file and private key file for your IO appliance (e.g., the cert.pem file and key.rsa file).
Enter the passphrase as per your IO application certificate-protected password. If you send a blank passphrase value, then the back-end service will consider the IO application UUID for validating the certificate.
Click “Save”
The confirmation dialog box displays then Click “Yes”.
The certificate gets applied to your appliance and appliance get restarted.