{}

Our Brands

Impact-Company-Logo-English Black-01-177x54

Schneider Electric USA Website

Welcome to our website.
How can we help you today?
Data Center Expert | Server Does Not Boot After Importing SSL Certificate Chain.
Issue
Importing an SSL certificate chain into StruxureWare DCE prevents the web server from starting, making the StruxureWare DCE unable to boot.

Product Line
StruxureWare Data Center Expert (DCE)
- Basic Appliance (AP9465)
- Standard Appliance (AP9470)
- Enterprise Appliance (AP9475)
- Virtual Appliance (AP94VMACT)
StruxureWare Central (SWC)
InfraStruXure Central (ISXC)

Environment
StruxureWare Data Center Expert (all versions)
StruxureWare Central (all versions)
InfraStruXure Central (all versions)

Cause
StruxureWare DCE supports importing standard SSL certificates signed by the root certificate authority only.  SSL certificates that describe a chain of certificate authorities are not supported.

Resolution

StruxureWare DCE supports importing standard SSL certificates signed by the root certificate authority only.  SSL certificates that describe a chain of certificate authorities are not supported.

A. If you have already imported the SSL certificate chain and your StruxureWare DCE server will not boot, you must call Technical Support for assistance.

B. If you have not yet imported the SSL certificate chain, you must create a new certificate signing request (CSR) in the StruxureWare DCE client; manually edit the *.pem file you received from your certificate signing authority to access its individual certificates; and add each certificate to StruxureWare DCE individually as shown below in step 4:

C: If you have not created a Certificate Signing Request, follow these steps:

1. Create a certificate signing request:

In the StruxureWare DCE client, navigate to the Web Server tab in the “Server Access” display, accessed from Server Administration Settings in the System menu.

Select Modify Certificate.

Select Create Certificate Signing Request (CSR) and specify the parameters.

Click Next. Maximize the window to display the entire certificate request, from ---BEGIN CERTIFICATE REQUEST--- to ---END CERTIFICATE REQUEST---
Copy the entire certificate and provide it to your certificate signing authority.

2. Once you receive the *.pem file from your certificate signing authority, open it in a text editor, and note the individual certificates.

3. Pull each certifcate out individually in a plain text editor (Root, Intermediary and certifcate issued directly to Data center expert)

4. Add the Root certifcate under System>Server Administration Settings>Server SSL Certificates

5. Add the Intermediary and any other certificate expect the certificate issued to DCE under the same menu, System>Server Administration Settings>Server SSL Certificates

6. Load the certificate issued directly to Data center expert under System>Server Administration Settings>Server Access>Web Server Tab>Modify Certificate>Add certificate

7. The server will then reboot

Schneider Electric USA

Explore more
Range:
Articles that might be helpful Users group

Discuss this topic with experts

Visit our Community for first-hand insights from experts and peers on this topic and more.
Explore more
Range: