The server configurations require clients to support a client-signed certificate by the approved CA certificate. This CA certificate
has been added to the appropriate folder in the server to support only allowing authorized clients to send messages. Use this
certificate in the Client Alias field for Syslog configurations.
Prerequisites: You have the required authority to create and manage certificates. You are either running
Workbench on your PC or laptop.
- To open the certificate stores, do one of the following in the Nav tree:
- Expand Platform and double-click Certificate Management.
- Expand and double-click CertManagerService.
Both steps open the same stores. Which to use depends on how you are connected to the platform/station.
- Click the New button at the bottom of the view.
The
Generate Self Signed Certificate window opens.
- Fill in the form and click OK.
- Create a CA certificate or use an existing CA. Refer to “Creating a root CA certificate”.
- Click Cert Request to create a certificate signing request.
- Navigate to .
The
Certificate Signing window opens.
- Select the certificate signing request and enter the password set while creating the CA certificate.
- Sign the client certificate with the CA certificate in
Workbench.
- Import the signed certificate back into
Workbench, replacing the self-signed certificate.
- Export the CA certificate and key as a PEM separately from
Workbench.
This CA certificate and key can be added to the CA certificate folder in the Syslog server and be used to sign the server
certificate while configuring the mutual authentication.