Step 1: Generate a Certificate Signing Request (CSR)
This step describes how to generate a Certificate Signing Request (CSR).
|
1.
|
Your network administrator should allocate a unique DNS name for the device (e.g., dns_name.corp.customer.com). This DNS name is used to access the device and therefore, must be listed in the server certificate. |
|
2.
|
If the device is operating in HTTPS mode, then set the 'Secured Web Connection (HTTPS)' parameter (HTTPSOnly) to HTTP and HTTPS (refer to the MP-11x and MP-124 User's Manual). This ensures that you have a method for accessing the device in case the new certificate does not work. Restore the previous setting after testing the configuration. |
|
3.
|
Login to the MP-1xx Web server. |
|
4.
|
Open the Certificates page (Configuration tab > System menu > Certificates). |
|
5.
|
Under the Certificate Signing Request group, do the following: |
|
a.
|
In the 'Subject Name [CN]' field, enter the DNS name. |
|
b.
|
Fill in the rest of the request fields according to your security provider's instructions. |
|
c.
|
Click the Create CSR button; a textual certificate signing request is displayed in the area below the button: |
Certificate Signing Request Group
|
6.
|
Copy the text and send it to the certificate authority (CA) to sign this request. |