Generate, Apply, and Manage Certificates
-
CSR—Choose CSR if your company maintains a Private Key Infrastructure (PKI) and certificate authority (CA), and can generate its own certificates. By issuing a CSR on Security Director Cloud, you will not need to upload the private key of the certificate to Juniper Security Director Cloud. After the CSR is generated by Juniper Secure Edge, download the CSR and submit it to your CA to generate a new certificate. Once generated, click Upload to upload the certificate on the Certificate Management page.
-
Juniper issued certificate—Choose Juniper Networks Issued Certificate if your company does not have its own CA. Juniper Networks will generate and keep the certificate on the system. Once the certificate has been generated, click Download to download the certificates. The CA certificate will be downloaded. Distribute the certificates to your managed devices.
Generate Certificates
Apply a Certificate
You can apply a certificate to deploy on all devices and enable communication with
Security Director Cloud. The applied certificate becomes the active certificate and
appears with the system-defined name jsec-ssl-proxy-root-cert.
To apply a certificate:
Manage Certificates
-
Regenerate—Select a CSR certificate or an externally generated certificate and click Regenerate. You can regenerate a certificate a few days in advance if the certificate is about to expire. You can either regenerate a Juniper issued certificate or a CSR for customer issued certificate.
Note: You can regenerate a Juniper-issued certificate only after the expiry. -
Delete—Select the certificate, and then click the trash can icon (
). You must delete a certificate before you delete a tenant and when you do not want to trust a certificate authority in Juniper Secure Edge.