MSM Custom SSL Cert Using Microsoft Certificate Authority Dell EMC Technical White Paper
Revisions Revisions Date Description Jan 2019 Initial release Acknowledgements This paper was produced by the following members of the Dell EMC storage engineering team: Author: Santosh Dell EMC Technical White Paper
Table of contents Table of contents Revisions.............................................................................................................................................................................2 Acknowledgements .............................................................................................................................................................2 Audience and scope ................................................................................................
Audience and scope Audience and scope The scope of the document is to provide a detailed procedure towards setting up a custom SSL/HTTPS certificate for Dell EMC OpenManage Enterprise Modular using Microsoft Windows Certification Authority. This white paper is intended for sale engineers, field application engineers, test engineers, architects or IT administrators who are involved in the decision-making process for the planning, configuration, and operation of a dynamic datacenter.
Generating a Certificate Signing Request (CSR) Click Generate Certificate Signing Request, provide the required information, and make sure that the Distinguished Name field contains the chassis FQDN/Hostname or localhost.localdomain if FQDN/Hostname is not set.
Generating a Certificate Signing Request (CSR) Click generate, and then click Download Certificate Signing Request or Copy and/or save the text from the newly opened browser tab or window.
Certificate signing using Microsoft Windows CA Certificate signing using Microsoft Windows CA This section shows you how to digitally sign a CSR generated using Microsoft Windows Certification Authority. This section assumes that the certification authority server has already been configured. Open the certification authority portal page in the web browser by using http://certificateauthority-ad/certsrv. Click certificate request and then advanced certificate request.
Certificate signing using Microsoft Windows CA Then click the Submit a certificate request by using a base-64-encoded CMC or PKCS#10 file. Copy and paste the contents of the CSR either by opening the downloaded CSR file or paste the already copied text into the Saved Request text area. Make sure that the BEGIN and END certificate REQUEST tags are present in the text and there are not trailing spaces in the text.
Certificate signing using Microsoft Windows CA Submit the certificate signing request using the Submit button. The Certificate Authority portal will show a pending certificate id on the next page. On the Certification Authority server, open the Certification Authority snapshot from Administrative Tools and go to pending requests.
Certificate signing using Microsoft Windows CA Right-click the pending certificate for the id generated before. On the context menu click All Tasks and Issue the certificate.
Certificate signing using Microsoft Windows CA Open the Certification Authority portal page and go to View the status of a pending certificate request.
Uploading cert to OpenManage Enterprise Modular Click on the saved certificate request and download the certificate and Base 64 encoded file on the disk using the Download certificate link. Uploading cert to OpenManage Enterprise Modular Open the management console and go to Application Settings - > Security -> Certificates tab. Click upload and browse the saved certificate to upload the certificate.
Uploading cert to OpenManage Enterprise Modular MSM will logoff and show an info message about certificate upload success.