Step 1: Generate a Certificate Signing Request (CSR)

This step describes how to generate a Certificate Signing Request (CSR).

To generate a CSR:
1. Your network administrator should allocate a unique DNS name for the device (e.g., dns_name.corp.customer.com). This DNS name is used to access the device and therefore, must be listed in the server certificate.
2. If the device is operating in HTTPS mode, then set the 'Secured Web Connection (HTTPS)' parameter (HTTPSOnly) to HTTP and HTTPS (refer to the MP-11x and MP-124 User's Manual). This ensures that you have a method for accessing the device in case the new certificate does not work. Restore the previous setting after testing the configuration.
3. Login to the MP-1xx Web server.
4. Open the Certificates page (Configuration tab > System menu > Certificates).
5. Under the Certificate Signing Request group, do the following:
a. In the 'Subject Name [CN]' field, enter the DNS name.
b. Fill in the rest of the request fields according to your security provider's instructions.
c. Click the Create CSR button; a textual certificate signing request is displayed in the area below the button:

Certificate Signing Request Group

6. Copy the text and send it to the certificate authority (CA) to sign this request.