Add a Trusted Root Certificate
A trusted root certificate is used by a RADIUS server to verify the identity of a RADIUS client. Use the Operations Console to add trusted root certificates for RSA RADIUS. By default, RSA RADIUS contains no trusted root certificates. You can add as many certificates as you need. You need to add a trusted root certificate on the primary instance only. RSA Authentication Manager replicates trusted root certificates to all RSA RADIUS servers in the deployment.
Note: The RADIUS server certificate and trusted root certificate used by the RADIUS server must be based upon the RSA algorithm.
Before you begin
You must be a Super Admin.
Verify that the certificate meets the following requirements:
certificate is in DER format.
certificate file has a .der extension.
Procedure
Log on to the Operations Console on the AM primary instance.
Click Deployment Configuration > RADIUS Servers.
If prompted, enter your Super Admin User ID and password.
Select the RADIUS server on the AM primary instance, and click Manage EAP Certificates from the context menu.
In the Manage EAP Certificates page, click the Trusted Root Certificates tab.
Click Browse to locate and select the certificate that you want to add.
Click Add to add the certificate to the server.
When you are finished adding trusted root certificates, click Done.
Related Tasks
Related Articles
How to replace an existing token in RSA Authentication Manager 8.x with a specific token in custom mode, and NOT with the … 19Number of Views Delete a Trusted Root Certificate 18Number of Views Delete a RADIUS Profile 6Number of Views Add a Trusted Realm 69Number of Views Add a Trusted User Group 8Number of Views
Trending Articles
RSA Authentication Manager Upgrade Process RSA Release Notes for RSA Authentication Manager 8.8 RSA RADIUS Server service failed to start in the RSA Authentication Manager 8.1 Operations Console Microsoft Entra ID External MFA - Relying Party Configuration Using OIDC - RSA Ready Implementation Guide RSA Release Notes: Cloud Access Service and RSA Authenticators