Print

Uploading external CA certificates as a Platform type trusted certificate

About this task

Before importing custom identity certificates on the Experience Portal servers, the external CA public certificates that signed the Experience Portal server’s identity certificates must be uploaded as a Platform type Trusted Certificate.

The Platform certificate file can be in PEM format or in PKCS#12 format.

If all the Experience Portal servers are signed by the same external CA, then the PKCS#12 file that contains the Primary EPM Identity Certificate can be uploaded as the Platform certificate. The external CA public certificate chain will be extracted from the PKCS#12 file and installed as a Trusted Certificate.

noteNote:

If all the Experience Portal servers are not signed by the same external CA, then the public certificates of each external CA that signed the identity Certificate of an Experience Portal server would need to be uploaded as a Platform type Trusted Certificate.

Procedure

  1. Log on to the EPM web interface.
  2. On the EPM navigation pane, click Security > Certificates.
  3. Click the Trusted Certificates tab.
  4. Click Upload to upload a trusted certificate.
  5. On the Upload Trusted Certificate page, do the following:
    1. Name: Enter a unique name for the Platform certificate.
    2. Type: Select Platform.
    3. Security Certificate File: Choose the file to upload.
      noteNote:
      • If the certificate file is in the PKCS#12 format, the system displays the Password field.

      • If the certificate file is in the PEM format, the system does not display the Password field.

  6. Click Continue.
  7. Click Save to upload the certificates.