Certificate Installation on ACS

First we will start with Root CA Certificate installation:

Login to Certificate server http://<ip or xyz>/certsrv

Click on “Download a CA Certificate, certificate chain or CRL

ACS1

Select the Encoding Method „Base 64“and click on Download CA certificate.

ACS2

ACS3

Save it to a location on our file system.

Now we have Root CA, it’s time to install Root CA on ACS.

Login to ACS, go to Users and Identity Stores > External Identity Stores > Certificate Authorities

Click on Add.

ACS4

Now Browse the Root CA, tick the check box “Trust for client with EAP-TLS” (Specially for EAP-TLS authentication) otherwise we will get error…example: 12514 (Failed SSL/TLS handshake)

Then click on Submit.

ACS5

Now we will Download /Install the ACS local server Certificate:

We must use these steps:

  1. Go to System Administration > Local Certificates, then click on Add
  2. Select Generate Certificate Signing Request:
  3. Fill the Certificate Subject name, Key length. Click Submit.

ACS6

Select third option “Generate Certificate Signing Request

ACS7

Click Next.

Enter the Certificate subject name.

Choose key length to 1024 or 4096 (Max value).

ACS8

Click Finish, this prompt will popup.

ACS9

Click OK. Now we can this signing request under Outstanding signing Request.

ACS10

Now Tick the request and click Export.

ACS11

Save it and open in notepad.

ACS12

Copy it

Login backup to certificate server and this time click on Request a Certificate.

ACS13

ACS14

ACS15

Paste the certificate signing request here (Which we opened in notepad)

**Select Web Server

ACS16

Download the Base 64 coded certificate. Click “Download certificate

ACS17

ACS18

Save it.

Now login again to ACS, select Bind CA signed Certificate

ACS19

Click Next, browse the Certificate here.

Also tick EAP and Management interface and click Submit.

ACS20

ACS21

Select OK and Click Finish.

Sometime we need to reboot ACS to complete the certificate installation.

That’s all About ACS certificate installation 🙂

Advertisements

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s