SMA100: How can I obtain a Certificate from a Windows Certificate Authority (CA) for SMA100 for AD auth issues with Version-10.2.2.1

Description

This article describes how to obtain a certificate from an internal CA for SonicWall SMA100 for AD / LDAP authentication.

Deployment Prerequisites

  • Microsoft Windows Active Directory Services installed and configured.
  • Microsoft Certificate Services installed and configured.
  • Microsoft Internet Information Services (IIS) 7.0 installed and configure.

Deployment Steps

  1.  Exporting the CA Certificate from the Active Directory Server.
  2. Importing the CA Certificate onto the SonicWall.
  3. Creating a New Signing Request in SonicWall Appliance.
  4. Requesting certificate for the new signing Request by the MS Certificate Authority.
  5. Validating the Certificate on the SonicWall Appliance.
  6. How to Test

Resolution

Exporting the Root CA Certificate from the Active Directory (AD) Server
  1. In the AD server, launch the Certificate Authority application by Start | Run | certsrv.msc.
  2. Right click the CA you created and select Properties.
  3. On the General tab, click View Certificate button.
  4. On the Details tab, select Copy to File.
  5. Follow through the wizard, and select the DER Encoded binary X.509 (.cer) format.
  6. Click browse and specify a path and filename to save the certificate.
  7. Click  Next button and click Finish.

Image

Image

Image

Image

Image

Image

Image

Image

 

 Importing the CA Certificate onto the SonicWall SMA100 series.
  1. Login to SMA Console
  2. Navigate to System | Certificate

Image

 

Click on Import Certificate - Under Addttional certificates

Image

Click Import. Select the certificate file you just exported

  • Select Import a CA certificate from a PKCS#7 (.p7b), PEM (.pem) or DER (.der or .cer) encoded file, 
  • Click Browse and Select the certificate file you just exported from the MS Certificate Authority.
  • Once the root certificate is selected, Click  import button.

 

 Once the CA root certificate is imported, it will be listed under the System | Certificates page with type as CA Certificate

Resolution

SMA100: How can I obtain a Certificate from a Windows Certificate Authority (CA) for SMA100 for AD auth issues with Version-10.2.2.1

If any issues please contact Technical support

Related Articles

  • SMA100 End of Support No-Charge Replacement FAQ
    Read More
  • SMA1000: Post upgrade to 12.5.0 on AWS and Azure, we show the error Could not retrieve the DNS settings once we log in to AMC/CMS console
    Read More
  • Firmware version required to upgrade to version 12.5.0.
    Read More
not finding your answers?