See below for issuing certificates and key pairs on a PKCS #12 file.

To issue certificates from the Certificate Authority console

  1. Open the following URL in a Web browser. 

    https://<machine>/v2/

    Where <machine> is the IP address or domain name of the machine hosting Cryptographic Security Platform. 

    Do not omit the ending forward slash "/" on this URL.

  2. Log in to the Management Console as the user described in Creating partition administrators
  3. In the Select Partition dialog, select the partition on which to manage certificate authorities and certificates. 
  4. Click Select.
  5. Click Certificate Authorities on the sidebar.

  6. In the certificate authorities grid, click the name of a certificate authority.
  7. Click Issue certificate.
  8. Configure the following settings. 
  9. Click Create.
  10. Click Download your PKCS #12

    As indicated in the warning message when leaving this page, you won’t be able to download the PKCS #12 file again.

Certificate Type

Select Server-side Generated Key Certificate (PKCS #12).

Mandatory: Yes.

Certificate Profile

The certificate profile for issuing the certificate.

This list only displays profiles configured in the issuing certificate authority.

Mandatory: Yes.

PKCS #12 Password

Enter and confirm the password that will protect the PKCS #12 generated file.

Mandatory: No.

Subject DN Attributes

Select the required Distinguished Name (DN) attributes.

You must enter at least the CN attribute value.

Mandatory: Yes.

Subject Alternative Names

The list of subject alternative names (SAN) for the certificate. 

Mandatory: No.