Administrator Guide

Congure a Custom SSL Certicate
Congure a custom SSL certicate to avoid certicate errors when connecting to the Data Collector website. An SSL certicate is also
required to communicate with a directory service using LDAP with the StartTLS extension or the LDAPS protocol.
Prerequisites
The custom certicate must be signed by a Certicate Authority (CA) that is trusted by the hosts in your network.
The certicate public key le must use DER or PEM encoding.
The certicate private key le must be in PKCS #12 format.
You must know the alias and password for the private key.
About this task
Certicates are generated on the Storage Center in the following locations:
/mnt/root/cacert.pem
/mnt/root/cakey.pem
/mnt/root/server.pem
NOTE: The Data Collector must be restarted to apply SSL certicate changes.
Steps
1 Connect to the Data Collector.
a Open a web browser.
b Type the address of the Data Collector in the web browser using the following format:
https://data_collector_host_name_or_IP_address:3033/
c Press Enter.
The Unisphere Central login page is displayed.
d Type the user name and password of a Data Collector user with Administrator privileges in the User Name and Password eld.
e Click Log In.
2
If a Storage Center is selected from the drop-down list, click (Home) in the left navigation pane.
3 Click Data Collector.
The Data Collector view is displayed.
4 Click the General tab, and then click the Security subtab.
5 In the Registered Certicate section, click Edit.
The Registered Certicate dialog box opens.
6 Upload the public key le.
a Click Choose File located to the right of the Public Key text.
b Browse to the location of the public key le, and then select it.
c Click Open.
The Public Key eld is populated with the path to the public key le.
7 Upload the private key le.
a Click Browse located to the right of the Private Key text.
b Browse to the location of the private key le, and then select it.
c Click Open.
The Private Key eld is populated with the path to the public key le.
8 Type the name of the entry in the PKCS #12 private key le to use as the private key in the In the Alias eld.
9 Type the password for the private key le in the Password eld.
10 Click OK.
The Data Collector Restart dialog box opens.
204
Data Collector Management