Changes for page Installing REMC1 Certificate Authority
Last modified by Jaremay Moreau on 2026/08/25 13:55
From version 30.1
edited by Eric Kemppainen
on 2021/12/23 05:24
on 2021/12/23 05:24
Change comment:
Updated the Android section and corrected the link, it was pointing to the wrong page.
To version 37.2
edited by Jaremay Moreau
on 2026/08/25 13:54
on 2026/08/25 13:54
Change comment:
Auto-saved during real-time collaboration
Summary
-
Page properties (3 modified, 0 added, 0 removed)
-
Attachments (0 modified, 17 added, 0 removed)
-
Objects (0 modified, 1 added, 1 removed)
Details
- Page properties
-
- Author
-
... ... @@ -1,1 +1,1 @@ 1 -XWiki. ekemppainen@remc1_org1 +XWiki.jmoreau@remc1_org - Tags
-
... ... @@ -1,0 +1,1 @@ 1 +certificate - Content
-
... ... @@ -2,70 +2,96 @@ 2 2 3 3 = {{id name="General-Info"/}}General Info = 4 4 5 -* In order for the Fortigate generated Deep Scanning certs to not generate an SSL warning you must import and Trust the REMC1 certificate authority cert. (%class="anchor" %)6 -* All Fortigate SSL certificates are dynamically generated from this certificate for Deep Scanning web filter/firewall profiles (%class="anchor" %)7 -* To quickly deploy the certificate push it out in the Machine section of Active Directory Group Policy under the Trusted CA authorities section. (%class="anchor" %)8 -* Firefox needs to have the certificate individually imported for each user. Firefox is not going to be feasible for deep scanning firewalls (all of them not just Fortigate). **Uninstall firefox.** (%class="anchor" %)9 -* Chrome, IE, Safari are feasible options. (%class="anchor" %)10 -* (% class="anchor" %)If you are REMC1 staff and are looking for methods to deploy the certificate please read this page: [[doc:NET.Methods to Deploy REMC1 Certificate Authority.WebHome]]5 +* In order for the Fortigate generated Deep Scanning certs to not generate an SSL warning you must import and Trust the REMC1 certificate authority cert. 6 +* All Fortigate SSL certificates are dynamically generated from this certificate for Deep Scanning web filter/firewall profiles 7 +* To quickly deploy the certificate push it out in the Machine section of Active Directory Group Policy under the Trusted CA authorities section. 8 +* Firefox needs to have the certificate individually imported for each user. Firefox is not going to be feasible for deep scanning firewalls (all of them not just Fortigate). **Uninstall firefox.** 9 +* Chrome, IE, Safari are feasible options. 10 +* If you are REMC1 staff and are looking for methods to deploy the certificate please read this page: [[Methods to Deploy REMC1 Certificate Authority>>doc:NET.Methods to Deploy REMC1 Certificate Authority.WebHome]] 11 11 12 -= {{id name="iOS-(iPad,-iPod,-iPhone)"/}}iOS(% style="color: rgb(0,0,0);" %) (iPad, iPod, iPhone)(%%) =12 += {{id name="iOS-(iPad,-iPod,-iPhone)"/}}iOS(% style="color:#000000" %) (iPad, iPod, iPhone)(%%) = 13 13 14 -1. Visit this website with the IOS device on Guest Wireless (or from home etc).(% class="anchor" %) 15 -1. Or email the certificate to the IOS device.(% class="anchor" %) 16 -1. Download the [[REMC1 .crt >>attach:REMC1.crt]]certificate file with the IOS device: [[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.crt||title="" shape="rect" class="attachment"]] 14 +(% start="1" %) 15 +1. Visit this website with the IOS device on Guest Wireless (or from home etc). 16 +1. Or email the certificate to the IOS device. 17 +1. Download the [[REMC1 .crt >>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.crt?version=1&modificationDate=1472743734000&cacheVersion=1&api=v2||shape="rect"]]certificate file with the IOS device: [[ >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.crt||shape="rect"]] 17 17 1. On the IOS device tap "Install" 18 -1. Follow the directions on [[Connect Personal Machine to Wireless>>url:https://confluence.remc1.net/x/ZYkh||shape="rect"]] to complete the connection19 +1. Follow the directions on [[Connect Device to Wireless>>url:https://confluence.remc1.net/display/PS/Connect+Device+to+Wireless||shape="rect"]] to complete the connection 19 19 20 -= {{id name="Android"/}}Android(% style="color: rgb(0,0,0);" %) (%%) =21 += {{id name="Android"/}}Android(% style="color:#000000" %) (%%) = 21 21 22 -* Connect to LTE internet ifpossible,alternativelydownloadthecertificate ontoalaptopand connect the phonewithaUSBcable.23 -* Download[[attach:REMC1.cer]]andcopy it to asecurelocation24 - (%style="text-align:left;"%)25 -** (% style="color: rgb(255,0,0);" %)**IMPORTANT: **(% style="color:rgb(255,0,0); color: rgb(0,0,0)" %)We recommend(%%) moving this to a folder other than downloads. If you delete the above file, you will lose your connection to the wifi and have to do this process again.23 +* Connect them to GUEST if no LTE signal but remember to FORGET THE GUEST NETWORK as the last step or it will endlessly try to connect to it forever and pop up guest login prompts. 24 +* OR Connect to LTE internet if possible, alternatively download the certificate onto a laptop and connect the phone with a USB cable. 25 +* Download [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]] and copy it to a secure location on the phone 26 +** (% style="color:#ff0000" %)**IMPORTANT: **(% style="color:#000000" %)We recommend(%%) moving this to a folder other than downloads. If you delete the above file, you will lose your connection to the wifi and have to do this process again. 26 26 * Follow the directions on [[Connect Device to Wireless>>url:https://confluence.remc1.net/display/PS/Connect+Device+to+Wireless||shape="rect"]] to complete the connection 27 27 28 -(% class="line874" %) 29 29 NOTE: You may need to turn wifi off and back on for the settings to take effect. 30 30 31 31 = {{id name="Windows---Without-Administrator"/}}Windows - Without Administrator = 32 32 33 -1. Download: [[attach:REMC1.cer]] 34 -1. Open up the certificate by double clicking on the downloaded file and choosing **Open** 35 -\\ [[image:attach:Downloads.PNG||height="250"]][[image:attach:Open.PNG||height="250"]] 36 -\\ 37 -1. On the Certificate information window that opens up choose **Install Certificate...** at the bottom of the window 38 -\\[[image:attach:Install.PNG||height="400"]] 39 -\\ 40 -1. Go through the wizard, accepting the default options 41 -\\[[image:attach:Install2.PNG||thumbnail="true" height="250"]][[image:attach:Install3.PNG||thumbnail="true" height="250"]][[image:attach:Install4.PNG||thumbnail="true" height="250"]][[image:attach:Finished.PNG]] 42 -\\ 43 -1. Follow the directions on [[Connect Personal Machine to Wireless>>url:https://confluence.remc1.net/x/ZYkh||shape="rect"]] to complete the connection 33 +(% start="1" %) 34 +1. Download: [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]] 35 +1. ((( 36 +Open up the certificate by double clicking on the downloaded file and choosing **Open** 37 + 44 44 39 +[[image:attach:Downloads.PNG||data-xwiki-image-style-alignment="start" original-height="600" original-width="853" width="353"]][[image:attach:Open.PNG||original-height="310" original-width="414" width="326"]] 40 + 41 +))) 42 +1. ((( 43 +On the Certificate information window that opens up choose **Install Certificate...** at the bottom of the window 44 + 45 + 46 +[[image:attach:Install.PNG||original-height="521" original-width="419" width="319"]] 47 + 48 +))) 49 +1. ((( 50 +Go through the wizard, accepting the default options 51 + 52 +[[image:attach:Install2.PNG||data-xwiki-image-style-alignment="start" original-height="466" original-width="513" width="272"]][[image:attach:Install3.PNG||data-xwiki-image-style-alignment="start" original-height="466" original-width="513" width="272"]][[image:attach:Install4.PNG||original-height="466" original-width="513" width="272"]][[image:attach:Finished.PNG||original-height="171" original-width="261"]] 53 + 54 +))) 55 +1. Follow the directions on [[Connect Personal Machine to Wireless>>doc:PS.Windows.Windows 10.Connect Personal Machine to Wireless.WebHome]] to complete the connection 56 + 45 45 = {{id name="Windows-–-Requires-Administrator-Privileges"/}}Windows – Requires Administrator Privileges = 46 46 47 -1. Download: [[attach:REMC1CertSFX.exe]] 48 -1. Copy [[attach:REMC1CertSFX.exe]] onto the computer missing the certificate 49 -1. Run: [[attach:REMC1CertSFX.exe]] 50 -1. When asked to extract, pick a place on your hard disk 51 -[[image:attach:extract.PNG||alt="Windows 7-zip self-extracting archive display" title="Windows 7-zip self-extracting archive display"]] 52 -1. Navigate to that location and run "InstallREMC1CertVersion6.exe" 53 -[[image:attach:run.PNG||alt="Windows cert folder display" title="Windows cert folder display" height="250"]] 54 -\\ 55 -1. When finished press enter: 56 -[[image:attach:enter.PNG||alt="Windows cert authority program display" title="Windows cert authority program display" height="250"]] 57 -\\ 58 -1. Follow the directions on [[Connect Personal Machine to Wireless>>url:https://confluence.remc1.net/x/ZYkh||shape="rect"]] to complete the connection 59 +(% start="1" %) 60 +1. Download: [[REMC1CertSFX.exe>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1CertSFX.exe?version=1&modificationDate=1476119828000&cacheVersion=1&api=v2||shape="rect"]] 61 +1. Copy [[REMC1CertSFX.exe>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1CertSFX.exe?version=1&modificationDate=1476119828000&cacheVersion=1&api=v2||shape="rect"]] onto the computer missing the certificate 62 +1. Run: [[REMC1CertSFX.exe>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1CertSFX.exe?version=1&modificationDate=1476119828000&cacheVersion=1&api=v2||shape="rect"]] 63 +1. ((( 64 +When asked to extract, pick a place on your hard disk 59 59 66 +[[Windows 7-zip self-extracting archive display>>image:attach:extract.PNG||alt="Windows 7-zip self-extracting archive display" original-height="157" original-width="386"]] 67 +))) 68 +1. ((( 69 +Navigate to that location and run "InstallREMC1CertVersion6.exe" 70 + 71 +[[image:attach:run.PNG||alt="Windows cert folder display" data-xwiki-image-label="Windows cert folder display" data-xwiki-image-style-alignment="center" original-height="252" original-width="782"]] 72 +))) 73 +1. ((( 74 +When finished press enter: 75 + 76 +[[image:attach:enter.PNG||alt="Windows cert authority program display" data-xwiki-image-label="Windows cert authority program display" original-height="512" original-width="979" width="476"]] 77 + 78 +))) 79 +1. Follow the directions on [[Connect Personal Machine to Wireless>>doc:PS.Windows.Windows 10.Connect Personal Machine to Wireless.WebHome]] to complete the connection 80 + 60 60 = {{id name="Mac-OSX"/}}Mac OSX = 61 61 62 -1. Download [[attach:REMC1.cer]] 83 +(% start="1" %) 84 +1. Download [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]] 63 63 1. Run the downloaded file 64 64 1. In the window that pops up, change "Keychain" to "System" 65 -1*. [[image:attach:installMac.png||alt="Mac add certificate page display" title="Mac add certificate page display"]](% class="anchor" %)\\ 87 +1*. ((( 88 +[[Mac add certificate page display>>image:attach:installMac.png||alt="Mac add certificate page display" original-height="352" original-width="582"]] 89 +))) 66 66 1. OSX may ask for a password before it will install 67 -1*. [[image:attach:password.png||alt="Mac keychain access username and password page display" title="Mac keychain access username and password page display"]] 68 -1. Follow the directions on [[Connect Personal Machine to Wireless>>url:https://confluence.remc1.net/x/ZYkh||shape="rect"]] to complete the connection 91 +1*. ((( 92 +[[Mac keychain access username and password page display>>image:attach:password.png||alt="Mac keychain access username and password page display" original-height="375" original-width="545"]] 93 +))) 94 +1. Follow the directions on [[Connect Personal Machine to Wireless>>doc:PS.Windows.Windows 10.Connect Personal Machine to Wireless.WebHome]] to complete the connection 69 69 70 70 = {{id name="Google-Chrome-Console"/}}Google Chrome Console = 71 71 ... ... @@ -74,14 +74,13 @@ 74 74 = {{id name="Certificate-Download---Windows-AD-Server/Group-policy/Linux/Other"/}}Certificate Download - Windows AD Server/Group policy/Linux/Other = 75 75 76 76 * Import the pem or cer file into your group policy to push out to windows clients. You can use the crt or pem on linux as well etc.. 77 -** [[attach :REMC1.crt]]78 -** [[attach :REMC1.cer]]79 -** [[att ach:remc-cert-authority-cert.pem]]103 +** [[REMC1.crt>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.crt?version=1&modificationDate=1472743734000&cacheVersion=1&api=v2||shape="rect"]] 104 +** [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]] 105 +** [[remc-cert-authority-cert.pem>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/remc-cert-authority-cert.pem?version=1&modificationDate=1474994524000&cacheVersion=1&api=v2||shape="rect"]] 80 80 81 -\\ 82 82 108 + 83 83 ---- 84 84 85 -\\ 86 86 87 - \\112 +
- Downloads.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391516a7b750068a46920 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +87.5 KB - Content
- Finished.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391516a7b750068a46920 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +25.6 KB - Content
- Install.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391516a7b750068a46920 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +53.3 KB - Content
- Install2.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391516a7b750068a46920 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +71.0 KB - Content
- Install3.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391516a7b750068a46920 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +46.2 KB - Content
- Install4.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391516a7b750068a46920 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +76.2 KB - Content
- InstallREMCCert.exe
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.steve@remc1_org - Size
-
... ... @@ -1,0 +1,1 @@ 1 +171.0 KB - Content
- Open.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391516a7b750068a46920 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +29.2 KB - Content
- REMC1.cer
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.steve@remc1_org - Size
-
... ... @@ -1,0 +1,1 @@ 1 +1.1 KB - Content
- REMC1.crt
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.steve@remc1_org - Size
-
... ... @@ -1,0 +1,1 @@ 1 +1.6 KB - Content
- REMC1CertSFX.exe
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391539b728c006a95cf09 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +228.0 KB - Content
- enter.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391539b728c006a95cf09 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +12.7 KB - Content
- extract.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391539b728c006a95cf09 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +2.9 KB - Content
- installMac.png
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a39401d442e60068439d9f - Size
-
... ... @@ -1,0 +1,1 @@ 1 +132.3 KB - Content
- password.png
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a39401d442e60068439d9f - Size
-
... ... @@ -1,0 +1,1 @@ 1 +228.0 KB - Content
- remc-cert-authority-cert.pem
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391539b728c006a95cf09 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +1.6 KB - Content
- run.PNG
-
- Author
-
... ... @@ -1,0 +1,1 @@ 1 +XWiki.62a391539b728c006a95cf09 - Size
-
... ... @@ -1,0 +1,1 @@ 1 +19.0 KB - Content
- Confluence.Code.ConfluencePageClass[0]
-
- id
-
... ... @@ -1,1 +1,0 @@ 1 -17186559 - space
-
... ... @@ -1,1 +1,0 @@ 1 -PS - stableId
-
... ... @@ -1,1 +1,0 @@ 1 -17172316 - title
-
... ... @@ -1,1 +1,0 @@ 1 -Installing REMC1 Certificate Authority
- Code.ConfluencePageClass[0]
-
- id
-
... ... @@ -1,0 +1,1 @@ 1 +17172316 - space
-
... ... @@ -1,0 +1,1 @@ 1 +PS - stableId
-
... ... @@ -1,0 +1,1 @@ 1 +17172316 - title
-
... ... @@ -1,0 +1,1 @@ 1 +Installing REMC1 Certificate Authority