...
Given a CA certificate file foo.crtpem
, follow these steps to install it on Snare Central:
Create a directory for extra CA certificates in
/usr/local/share/ca-certificates
:Code Block sudo mkdir /usr/local/share/ca-certificates/SAM
Copy the CA
.crtpem
file to this directory:Code Block sudo cp foo.crtpem /usr/local/share/ca-certificates/SAM/foo.crtpem
Let Snare Central add the
.crtpem
file's path relative to/usr/local/share/ca-certificates
to/etc/ca-certificates.conf
:Code Block sudo update-ca-certificates
Restart SAM:
...
Go to SAM UI to “Settings” → “General”
Choose the correct certifciate certificate in “Agent HTTPS Certificate”
NOTE: In case of a .pem
file on Snare Central, it must first be converted to a .crt
file:
Code Block |
---|
openssl x509 -in foo.pem -inform PEM -out foo.crt |
Or a .cer
file can be converted to a .crt
file:
...