Exporting a web operational certificate signing request

This procedure describes how to change the certification authority (CA) from internal to external for individual devices.

Export a certificate signing request together with an operational certificate for individual devices and hand them over at a file level to that external CA for signing. Import an externally signed certificate to the device in ABT Site. The CA is changed from internal to external after import.

 

Export a certificate signing request

  1. The device supports operational certificates.
  2. The device has a valid serial number.
  3. The domain name is specified.
    Address defaults
  1. Open Building > Certificates management.
  2. Select at least one device with external certificate type.
  3. Select the Web interface tab.
  4. Click Export CSR.
  1. The files *.csr and *.txt are exported.

    You can deliver the file to a certification authority for signing.
  2. Note: The file *.csr contains a file header. The *.txt does not have a header.

 

OR

 

Export a certificate signing request

  1. The device supports operational certificates.
  2. The device has a valid serial number.
  3. The domain name is specified.
    Address defaults
  1. Open Building > Building structure.
  2. Select at least one device with external certificate type.
  3. Open the Details pane.
  4. Do the following:
  5. for the device version ≤ 1.5: select the IPv4 tab.
  6. for the device version ≥ 1.6: select the Certificates tab.
  7. Click Export certificate signing request.
  1. The files *.csr and *.txt are exported.

    You can deliver the file to a certification authority for signing.
  2. Note: The file *.csr contains a file header. The *.txt does not have a header.

 

Error messages

A missing entry in Domain name or Serial number shows an error in the Log area.

Check the Domain name entry.

  1. Select the Settings tab.
  2. Open the Address defaults task.
    Address defaults
  3. Select the IP tab.