Certificates For Https - McAfee SG310 Administration Manual

Utm firewall
Table of Contents

Advertisement

System menu features
Management menu
Click Submit.
7
Re-enabling Management Console access
If Management Console access has been disabled on HTTP and HTTPS, perform the following procedure to
re-enable Web access. If you do not have Telnet or SSH access you will have to reset your UTM Firewall to
the factory default, and reconfigure your policies or restore a configuration backup.
To re-enable Management Console access:
Log into your UTM Firewall using Telnet or SSH.
1
Type enableweb and press Enter.
2
Management Console access is restored over all interface types. Be sure to update access control settings.

Certificates for HTTPS

As of version 3.1.4 of the firmware, a certificate for HTTPS (Secure HTTP) access is generated automatically
when the appliance is first booted. The certificate contains default information for country, city, and related
fields. It is enough to allow HTTPS access out-of-the-box, and it is relatively secure as no two UTM Firewall
appliances have the same certificate. However, it is strongly recommended that an appropriate site-specific
certificate either be uploaded or manually created at the earliest possible convenience. A proper certificate
enables remote clients to establish its authenticity upon connection using chain of trust, root-cert signed, or
site-specific fingerprint. If you have purchased or created SSL certificates for a Web server, you can upload
them to the appliance.
Uploading an SSL certificate
From the System menu, click Management, and the select the Web tab. The Web Management
1
configuration page appears.
Click Upload certificate. The Upload Certificate page appears
2
Figure 351 Upload Certificate page
Click Browse to locate the Local Certificate (RSA x509 certificate) and its corresponding Private Key
3
Certificate.
Click Submit.
4
Creating an SSL certificate
Use this procedure to manually create or update a self-signed certificate on the UTM Firewall appliance. The
optional fields are used to create the distinguished name of the certificate. For best results, complete all
optional fields.
When you access the Management Console using HTTPS, your Web browser may give warnings about the
authenticity of the certificate since it has not been signed by a known Certificate Authority. For more
information, see
Uploading an SSL
browser, see
Installing your certificate in your
McAfee UTM Firewall 4.0.4 Administration Guide
certificate. Otherwise, if you want to import your certificate into the IE
browser.
(Figure
351).
345

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sg560Sg560uSg565Sg580

Table of Contents