Software Secure Firewall Threat Defense
Platform Secure Firewall Threat Defense Virtual
Activity Onboard

Upload an Internal Certificate for Inbound Protection

This task discusses how to upload an internal certificate authority when you create a decryption rule that protects outbound connections. You can also upload the internal CA using Objects > Object Management as discussed in Importing a CA Certificate and Private Key.

Before you begin

Make sure you have an internal certificate authority in one of the formats discussed in Internal Certificate Authority Objects.

Procedure

1

Log in to Security Cloud Control if you haven't already done so.

2

Click Administration > Integrations > Firewall Management Center and choose Policies > Access Control > Decryption.

3

Click Create Decryption Policy.

4

Enter a name for the policy in the Name field and an optional description in the Description field.

5

Click the Inbound Connections tab.

6

From the Internal Certificates list, click Add (add icon).

7

Click Upload.

8

Give the internal certificate a Name.

9

Paste or browse to locate the certificate and its private key in the provided fields.

10

If the certificate has a password, select the Encrypted check box and enter the password in the adjacent field.

11

Continue creating the decryption policy as discussed in Create a Decryption Policy with Inbound Connection Protection.