Managing Changes to the Portal TLS Certificate

Prev Next

During the initial setup of the edge filer, a customer that uses a privately issued certificate on the CTERA Portal is required to upload the root CA to the CTERA Edge Filer so that the edge filer is trusted by the CTERA Portal, as described in Loading a Certificate to a CTERA Edge Filer.

When the portal's SSL/TLS certificate is updated, especially when moving to a new self-signed certificate or a different internal Certificate Authority (CA), the existing trust relationship is broken. The edge filers will disconnect and report connection failures until they are updated to trust the new certificate or CA manually. You must manually upload the new self-signed certificate or the issuing Root CA to each edge filer, or use the GUI for bulk updates.

To import a TLS certificate to the CTERA Edge Filer:

  1. In the Configuration view, select System > Certificates in the navigation pane.
    image.png
  2. Under TLS Certificate click Import TLS Certificate.
    image.png
  3. Paste the private key for the certificate in the top text box.
  4. Paste the TLS certificate in .pem format in the bottom text box.
    The TLS certificate should be similar to the following example.
    image.png
  5. Click Save.

The certificate is imported to the edge filer:
image.png