Installing the SSL/TLS certificates for your corporate network

In order to configure the reverse proxy to a publicly trusted or dedicated certificate that is trusted inside the corporate network, a PKCS #12 bundle consisting of the private key, certificate and the certificate chain is needed.

Procedure

  1. In the eperi sEcure Platform Admin Console, select TLS > TLS Keys tab and select Import.
  2. In the Import Keystore dialogue, select a PKCS#12 keystore file, provide the keystore password and click Next.

  3. In the following dialogue, select the correct Key Alias and enter the (display) name for your Key Pair.

    The newly uploaded certificate shows up in the Keys tab.

  4. Go to Services > Proxies and click on the Reverse Proxy for your SaaS application to edit its configuration.
  5. In the Edit Proxy dialogue, enable the TLS Enabled setting and disable the Use default certificate option.
  6. From the Key Name dropdown menu, select the previously imported TLS Key and from the Certificate dropdown menu, select the corresponding TLS Certificate.
  7. Save the changes by clicking Submit.
  8. On the same page, restart the Reverse Proxy for the settings to take effect.
    Important: In a cluster setup, the proxy must be restarted with Cluster Wide option.

    Proxy Status - Proxy cannot (re)start

Results

You have now configured the Reverse Proxy to use a certificate that is trusted by the clients in your organization.