Import the signed server certificate and configure each station

When signing is complete, the .pem files for the server certificates need to be transported (on a flash/thumb drive or laptop computer) back to where they came from and stored in the folder you set up for server certificates. Even though these files do not contain their private keys, you should transport them securely between locations.

These tasks remain to set up SSL on a JACE or Supervisor:

Import the server certificate into the Key Store

The JACE platform and station share the same Key and Trust stores. This procedure demonstrates how to use station PlatformServices to import a signed server certificate back into each platform Key Store.

NoteThe certificate you import back into the platform must match the original Alias.

  1. Connect to the station using a Foxs connection, otherwise Workbench displays a warning message.

  2. In Workbench, click StationConfigServicesPlatformServicesCertManagerServices.

    Certificate Management opens with the focus on the Key Store.

  3. Click , locate the certificate .pem file and click .

    Certificate Import displays the certificate details.

    If the Alias of the certificate you are importing is not the same as the Alias of the certificate you are replacing, the system prompts you for the Alias of the certificate to replace.

  4. Confirm that this is the certificate you expect and click OK.

    The green shield icon appears next to the certificate Alias in the Key Store.

Enable platform SSL and select the platform server certificate

  1. Make a secure connection to the platform.

  2. Double-click the platform node in the Nav tree and double-click Platform.

  3. Double-click Platform Administration.

  4. Click .

    The Platform SSL Settings dialog appears.



  5. Change State to Enabled, change the Certificate to the certificate you created, and click Save.

Select the Https and Foxs service certificates

This procedure assumes you have enabled Https and Foxs. For more information about enabling the services, see Set up Workbench and stations for SSL.

  1. Make a secure connection to the station.

  2. Select the property sheet for the service in the Nav tree:

    • For Web Service select StationConfigWeb Service.

    • For Fox Service select StationConfigDriversNiagara Network.

    The property sheet appears.



  3. Select the certificate to use for the Https Cert from the drop-down list.

  4. Select the certificate to use for the Foxs Cert from the drop-down list.