Generate a new certificate

In this topic, you learn how to generate a new authentication certificate.

Prerequisites

  • There are no prerequisites.

Procedure

  1. In the Cockpit, go to Security and select Certificates.

    Result: A list with all existing authentication certificates is shown.

  2. Select Add.

  3. In the General tab, enter a name for the certificate.

  4. You can enter a description and select a package for the certificate.

  5. In the Attributes tab, enter specific values for the certificate.

    1. Sign with: Self-signed is default. You can select another predefined certificate as well.

    2. Bit Size: 2048 bit is default. You can select 1024 and 4096 as well.

    3. Serial Number: 01 is default. You can select another number.

    4. Select Use encyption (sha-256) if you use a server-side certificate or Client Certificate if the certificate should be used on the client side.

    5. Customize the validity. The default is one year.

    6. Enter a Common Name (CN) for the certificate and fill in the other data.

  6. Select Generate New Certificate.

    Result: The Private Key dialog opens.

  7. Copy the private key of the certificate to your clipboard and store it in a secure location.

    You cannot view the private key again once you close the Private Key dialog. Copy and store the private key before closing the dialog.
  8. Select Download to download the certificate contents and public key as a .cer file.

Results

  • You have generated a new certificate and the corresponding keys. The generated certificate contents and the public key of the certificate are shown in the Keys tab.