Q:How do I update or load the SMC2.0 certificate?
A:Updating or loading the SMC2.0 certificate consists of four steps: Uninstalling the Root Certificate Provided with the SMC2.0 System,Installing the Client Root Certificate,Installing the Server Certificate and Binding the Server Certificate. For details, click More or see http://support.huawei.com/enterprise/en/doc/EDOC1100014819.
More:
Uninstalling the Root Certificate Provided with the SMC2.0 System
1. Log in to the SMC2.0 server as the SMC2.0 administrator.
2. Add a certificate manager to the console(If a certificate manager is already added, skip this step.).
a. Choose Start > Run, enter MMC, and press Enter.
b. In the Console1 window, choose File > Add/Remove Snap-in....
c. In the Add or Remove Snap-ins window, select Certificates from the Available snap-ins area and click Add to move it to the Selected snap-ins area.
d. In the Certificates snap-in window, select Computer account and click Finish.
e. In the Add/Remove Snap-ins window, click OK.
3. In the Console1 window, choose Console Root > Certificates > Trusted Root Certification Authorities > Certificates.
4. Right-click huawei_ca from the shortcut menu and choose Delete.
In the subsequent windows, click Yes until the certificate is uninstalled.
Installing the Client Root Certificate
1. Perform steps 1 through 3 in the previous task.
2. Right-click the Certificate node.Then choose All Tasks > Import and select the root certificate to be imported. The root certificate name must be in the format of sc_root.der.
Installing the Server Certificate
1. Log in to the SMC2.0 server as the SMC2.0 administrator.
2. Enter IIS in the Windows search box and select Internet Information Services(IIS) Manager among the results.
3. In the Internet Information Services(IIS) Manager window, choose the root directory from the navigation tree on the left. Under IIS in the middle pane, double-click Server Certificates,
4. Click Import in the operation list on the right.
5. Upload the purchased certificate file in pfx format, enter the password, select Allow this certificate to be export based on the certificate requirements, and click OK.
Binding the Server Certificate
Binding the Server Certificate
1. Enter Internet Information Services (IIS) Manager.
2. Bind the certificate to the SmcSite.
a. From the navigation tree on the left, choose WIN-XXXXXX > Sites > SmcSite, right-click SmcSite and choose Edit bindings....
b. In the Site Binding window, select https and click Edit....
c. From the SSL certificate drop-down list, choose the certificate to be bound and click OK,
3. In the SmcFileSrv site, bind the commercial certificate by following the method in Step 2.
4. Bind the certificate to the SmcFtp site.
a. From the navigation tree on the left, choose WIN-XXXXXX > Sites > SmcFtp.
b. Double-click FTP SSL Settings on the SmcFtp homepage.
c. From the SSL certificate drop-down list, choose the certificate to be bound.
d. Click Apply on the right. A dialog box is displayed, indicating the change is saved.
This post was last edited by UCC_Express at 2018-05-24 07:18.
