HTTPS Certificate Settings
The Single Connect HTTP Proxy produces an HTTPS certificate for all devices that use the HTTPS connection method. The default properties for the certificate authority (CA) of this certificate are listed below. If you want to use its own CA, the parameters below should be set:
- Establish an SSH connection to the Single Connect server and run the commands: cd /u01 vi sc-http-proxy-proxy.properties
- Add these parameters in the vi editor: http.proxy.ssl.ca.pem.file=SingleConnect_http_proxy_ca.pem http.proxy.ssl.ca.key.file= SingleConnect_http_proxy_ca.key http.proxy.ssl.ca.password=(AES256 encrypted)
Users need to import the certificate (a .pem file) to their web browsers, in order to connect to target systems. The .pem file is under the /u01/sc-http-proxy/ directory. Get them using an SFTP client and import them to the web browsers following these steps:
Internet Explorer and Chrome: Windows Start > Internet Options > Content > Publishers > Trusted Root Publishers > Import... Firefox: Options > Privacy & Security > View Certificates... > Authorities > Import..