Generating a Certificate Signing Request (CSR)
To generate a Certificate Signing Request (CSR):
- Click the icon and select Administration from the navigation drop-down menu.
- Click System Settings on the toolbar and then click Certificates on the sidebar.
The Certificates pane opens, listing any certificate signing requests generated on HMP. The active certificate is indicated with a checkmark in the Active column. - Click Generate.
- On the Generate Certificate or Private Key dialog, enter a name for the certificate.
- Ensure the Type is Certificate Signing Request and complete the remaining fields. See Certificate Settings.
- For the Subject, enter information about the device that the Identity Certificate represents. For more information, see the "Subject" entry in Certificate Settings.
Click Generate.
Returning to the Certificates list, click the link for the generated CSR to open the file in a new window. Copy the contents (including both beginning and ending delimiters) and paste it into your Certificate Authority (CA) application. The CA will return an intermediate certificate (trust chain) and signed certificate (CRT).
Tip
Keep in mind that there is a difference between importing a new certificate (that was generated externally) and importing a newly signed certificate whose request was previously generated on HMP and exported for signing.