Ask a Question

Advanced Search

Alert ID : INFO119

Last Modified : 10/08/2018

Managed PKI for SSL - Installation Instructions for Netscreen ScreenOS


This document provides instructions for installing SSL Certificates. If you are unable to use these instructions for your server, Symantec recommends that you contact either the vendor of your software or an organization that supports ScreenOS.

Step 1. Download and Install Symantec Intermediate CA Certificate

  1. Download the Intermediate CA certificate from this link: INFO 657
  2. Select the Managed PKI for SSL tab
  3. Select the appropriate Intermediate CA certificate for your SSL Certificate type.
    NOTE: To check which certificate type you have purchased, follow the steps from this link: SO22021
  4. Copy the Intermediate CA certificate and paste it on a Notepad.
  5. Make sure there are 5 dashes to either side of the BEGIN CERTIFICATE and END CERTIFICATE and that no white spaces, extra line breaks or additional characters have been inadvertently added.
  6. Save the file as intermediate.crt 
  7. Open the WebUI
  8. From the Options menu, click Objects, and then click Certificates.
  9. From the show dropdown select CA.
  10. Click Browse to locate the intermediate.crt saved on your local system.
  11. Click Load

Step 2. Obtain and Install the SSL Certificate

  1. Once your Managed PKI for SSL administrator has approved your Certificate request, you will receive an email with the Certificate attached (cert.cer), as well as in the body of the email itself.
  2. Copy  the certificate from the body of the e-mail and paste it in a text file using Vi or Notepad.
    NOTE: Do not use Microsoft Word or other word processing programs that may add characters. Confirm that there are no extra lines or spaces in the file.

    The text file should look like:


              [encoded data]

    -----END CERTIFICATE-----

    NOTE: To download the certificate from your Managed PKI for SSL subscriber services page, see solution SO6621
    Please select X.509 as a certificate format and copy only the End Entity Certificate.
  3. Save the file with extansion SSL.crt
  4. From the Options menu, click Objects, and then click Certificates.
  5. From the show dropdown select Local.
  6. Click Browse to locate the SSL.crt
  7. Click Load.
  8. To verify if your certificate is installed correctly, use the Symantec Installation Checker


          For more information, see the Netscreen Support Center