Entrust Datacard

Entrust Certificate Services Support Knowledge Base

Last Modified: 2016-09-07 15:42:20.0

How are the L1K Chain Certificates installed on Citrix Netscaler Access Gateway ?

Article Number: 46488

Question:

How are the L1K Chain Certificates installed on Citrix Netscaler?

** Note these steps are based on Citrix Netscaler version 10.5


Answer:

To install the L1K chain certificates, you must download Entrust L1K chain cert file (default file name: L1Kchain.txt) and L1K cross certificate (default file name: L1kchainroot.txt) from certificate pick up page. To install the chain certificates required for L1K, complete the following steps: 

STEP 1 – Installing Entrust L1K chain root / Cross certificate (L1Kchainroot.txt)

  1. Click on Configuration tab > Traffic Management > SSL > SSL Certificates
  2. Click on Install button
  3. In the Install Certificate Window, Supply the following information:

-          A name for the certificate. Example: Entrust Cross Certificate

-          The Certificate File Name. Browse to the local location of your Chain file (L1Kchainroot.txt).

-          Select PEM for the Certificate Format.

  1. Click Install button
  2. The chain root certificate will appear on the SSL Certificates list. NOTE: To continue the step 6 and 7 below, make sure you have already installed the Entrust Root certificate. If not, please refer to our documentation for installing root certificate on this appliance.

  1. Select the chain root certificate on the list and then click on Action then select Link.

  1. The CA Certificate Name box will be automatically populated with profile name that created during Entrust Root installation process. Example: Entrust Root. Click Ok. If the CA Certificate Name field is empty, then you need to go back to the step on our documentation on how to install the Entrust root certificate properly.

 

STEP 2 – Installing Entrust L1K chain certificate (L1Kchain.txt)

1.    Click on Configuration tab > Traffic Management > SSL > SSL Certificates

2.    Click on Install button

3.    In the Install Certificate Window, Supply the following information:

-          A name for the certificate. Example: Entrust Chain Certificate

-          The Certificate File Name. Browse to the location of your Chain file (L1Kchain.txt).

-          Select PEM for the Certificate Format.

4.    Click Install button

5.    The chain certificate will appear on the SSL Certificates list

6.    Select the chain certificate profile name on the list and then click on Action then select Link.

7.    The CA Certificate Name box will be automatically populated with profile name that created on STEP 1 which associated with Entrust L1K chain root / cross certificate. Example: Entrust Cross Certificate. Click Ok. If the CA Certificate Name field is empty, then you need to go back to STEP 1 and to make sure you have import the L1K chain root / cross certificate correctly.

TN8895