Entrust Datacard

Entrust Certificate Services Support Knowledge Base

Last Modified: 2016-09-01 13:30:55.0

How are the L1M Chain Certificates installed on Citrix Netscaler Access Gateway ?

Article Number: 46486

Question:

How are the L1M Chain Certificates installed on Citrix Netscaler?

** Note: these steps are based on Citrix Netscaler version 10.5

 

Answer:

To install the L1M chain certificates, you must download Entrust L1M chain cert file (default file name: L1Mchain.txt) and L1M cross certificate (default file name: L1Mchainroot.txt) from certificate pick up page. To install the chain certificates required for L1M, complete the following steps: 

STEP 1 – Installing Entrust L1M chain root / Cross certificate (L1Mchainroot.txt)

* NOTE : The L1M chain root / cross certificate is identical with L1K chain root certificate. If you have already installed L1K chain root certificate on your appliance, then you can ignore this step. This appliance will not allow you to install the same certificate twice. The L1K chain root certificate came with the Non - EV (Extended Validation) type of cert. 

    • Click on Configuration tab > Traffic Management > SSL > SSL Certificates
    • Click on Install button
    • In the Install Certificate Window, Supply the following information:

    -          A name for the certificate. Example: Entrust Cross Certificate

    -          The Certificate File Name. Browse to the local location of your Chain file (L1Mchainroot.txt).

    -          Select PEM for the Certificate Format.

      • Click Install button
      • The chain root certificate will appear on the SSL Certificates list. NOTE: To continue the step 6 and 7 below, make sure you have already installed the Entrust Root certificate. If not, please refer to our documentation for installing root certificate on this appliance.

        • Select the chain root certificate on the list and then click on Action then select Link.

          • The CA Certificate Name box will be automatically populated with profile name that created during Entrust Root installation process. Example: Entrust Root. Click Ok. If the CA Certificate Name field is empty, then you need to go back to the step on our documentation on how to install the Entrust root certificate properly.

           

          STEP 2 – Installing Entrust L1M chain certificate (L1Mchain.txt)

          1.    Click on Configuration tab > Traffic Management > SSL > SSL Certificates

          2.    Click on Install button

          3.    In the Install Certificate Window, Supply the following information:

          -          A name for the certificate. Example: Entrust Chain Certificate

          -          The Certificate File Name. Browse to the location of your Chain file (L1Mchain.txt).

          -          Select PEM for the Certificate Format.

          4.    Click Install button

          5.    The chain certificate will appear on the SSL Certificates list

          6.    Select the chain certificate profile name on the list and then click on Action then select Link.

          7.  The CA Certificate Name box will be automatically populated with profile name that created on STEP 1 which associated with Entrust L1M chain root / cross certificate. Example: Entrust Cross Certificate. Click Ok. If the CA Certificate Name field is empty, then you need to go back to STEP 1 and to make sure you have import the L1M chain root / cross certificate correctly.

          TN8903