Verifying the Signed Certificate Matches Private Key

After importing the signed certificate from the CA, verify that the certificate matches the private key associated with the TLS Context (the one used to generate the CSR). If they don't match, for example, if the CSR was regenerated after the CA request was submitted, the TLS handshake will fail even though the import itself succeeds.

To verify the certificate matches the private key:
1. Open the TLS Contexts table (see Configuring TLS Contexts).
2. Select the TLS Context.
3. Verify that the 'Certificate Status' field displays "Keys match successfully"; otherwise, consult with your security administrator: