Last modified by Jaremay Moreau on 2026/08/25 13:55

From version 38.1
edited by Jaremay Moreau
on 2026/08/25 13:55
Change comment: Updated the image properties to text-align: none to make the page readable and not a compressed mess.
To version 25.1
edited by 62a391516a7b750068a46920
on 2017/11/10 06:10
Change comment: There is no comment for this version

Summary

Details

Page properties
Author
... ... @@ -1,1 +1,1 @@
1 -XWiki.jmoreau@remc1_org
1 +XWiki.62a391516a7b750068a46920
Tags
... ... @@ -1,1 +1,0 @@
1 -certificate
Content
... ... @@ -2,111 +2,84 @@
2 2  
3 3  = {{id name="General-Info"/}}General Info =
4 4  
5 -* In order for the Fortigate generated Deep Scanning certs to not generate an SSL warning you must import and Trust the REMC1 certificate authority cert.
6 -* All Fortigate SSL certificates are dynamically generated from this certificate for Deep Scanning web filter/firewall profiles
7 -* To quickly deploy the certificate push it out in the Machine section of Active Directory Group Policy under the Trusted CA authorities section.
8 -* Firefox needs to have the certificate individually imported for each user. Firefox is not going to be feasible for deep scanning firewalls (all of them not just Fortigate). **Uninstall firefox.**
9 -* Chrome, IE, Safari are feasible options. 
10 -* If you are REMC1 staff and are looking for methods to deploy the certificate please read this page: [[Methods to Deploy REMC1 Certificate Authority>>doc:NET.Methods to Deploy REMC1 Certificate Authority.WebHome]]
5 +* In order for the Fortigate generated Deep Scanning certs to not generate an SSL warning you must import and Trust the REMC1 certificate authority cert.(% class="anchor" %)
6 +* All Fortigate SSL certificates are dynamically generated from this certificate for Deep Scanning web filter/firewall profiles(% class="anchor" %)
7 +* To quickly deploy the certificate push it out in the Machine section of Active Directory Group Policy under the Trusted CA authorities section.(% class="anchor" %)
8 +* Firefox needs to have the certificate individually imported for each user. Firefox is not going to be feasible for deep scanning firewalls (all of them not just Fortigate). **Uninstall firefox.**(% class="anchor" %)
9 +* Chrome, IE, Safari are feasible options.(% class="anchor" %)
10 +* (% class="anchor" %)If you are REMC1 staff and are looking for methods to deploy the certificate please read this page: [[doc:NET.Methods to Deploy REMC1 Certificate Authority.WebHome]]
11 11  
12 -= {{id name="iOS-(iPad,-iPod,-iPhone)"/}}iOS(% style="color:#000000" %) (iPad, iPod, iPhone)(%%) =
12 += {{id name="iOS-(iPad,-iPod,-iPhone)"/}}iOS(% style="color: rgb(0,0,0);" %) (iPad, iPod, iPhone)(%%) =
13 13  
14 -(% start="1" %)
15 -1. Visit this website with the IOS device on Guest Wireless (or from home etc).
16 -1. Or email the certificate to the IOS device.
17 -1. Download the [[REMC1 .crt >>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.crt?version=1&modificationDate=1472743734000&cacheVersion=1&api=v2||shape="rect"]]certificate file with the IOS device: [[ >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.crt||shape="rect"]]
18 -1. On the IOS device tap "Install"
19 -1. Follow the directions on [[Connect Device to Wireless>>url:https://confluence.remc1.net/display/PS/Connect+Device+to+Wireless||shape="rect"]] to complete the connection
14 +1. Visit this website with the IOS device on Guest Wireless (or from home etc).(% class="anchor" %)
15 +1. Or email the certificate to the IOS device.(% class="anchor" %)
16 +1. Download the [[REMC1 .crt >>attach:REMC1.crt]]certificate file with the IOS device: [[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.crt||title="" shape="rect" class="attachment"]]
17 +1. On the IOS device tap "Install"(% class="anchor" %)
20 20  
21 -= {{id name="Android"/}}Android(% style="color:#000000" %) (%%) =
19 += {{id name="Android"/}}Android(% style="color: rgb(0,0,0);" %) (%%) =
22 22  
23 -* Connect them to GUEST if no LTE signal but remember to FORGET THE GUEST NETWORK as the last step or it will endlessly try to connect to it forever and pop up guest login prompts.
24 -* OR Connect to LTE internet if possible, alternatively download the certificate onto a laptop and connect the phone with a USB cable.
25 -* Download [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]] and copy it to a secure location on the phone
26 -** (% style="color:#ff0000" %)**IMPORTANT: **(% style="color:#000000" %)We recommend(%%) moving this to a folder other than downloads. If you delete the above file, you will lose your connection to the wifi and have to do this process again.
27 -* Follow the directions on [[Connect Device to Wireless>>url:https://confluence.remc1.net/display/PS/Connect+Device+to+Wireless||shape="rect"]] to complete the connection
21 +* NOTE: These instructions were written for an HTC One VX, with Sense UI, running Android 4.1.2. Different manufacturers/UI variants and different versions of Android (especially android 2.1 or lower) may have different methods for adding certificate authorities.(% class="anchor" %)
22 +* Add the device to wireless(% class="anchor" %)
23 +* Download [[attach:REMC1.cer]] and copy it to the root of the SD card.(% class="anchor" %)
24 +* Go to settings > security(% class="anchor" %)
25 +* Select "Install from Storage"(% class="anchor" %)
26 +* Type REMC1 and press ok.(% class="anchor" %)
27 +* (% class="anchor" %)Enable screen locking (needed in android 6.0)
28 +* Go to settings > wifi(% class="anchor" %)
29 +* Press & hold the staff or student network(% class="anchor" %)
30 +* Tap "Modify Settings"(% class="anchor" %)
31 +* Check "Show advanced settings"(% class="anchor" %)
32 +* Tap "CA Certificate"(% class="anchor" %)
33 +* Select the REMC1 certificate(% class="anchor" %)
34 +* Tap "Save"(% class="anchor" %)
28 28  
29 -NOTE: You may need to turn wifi off and back on for the settings to take effect.
36 +(% class="line874" %)
37 +NOTE: You may need to turn wifi off and back on for the settings to take effect.(% class="anchor" %)
30 30  
31 31  = {{id name="Windows---Without-Administrator"/}}Windows - Without Administrator =
32 32  
33 -(% start="1" %)
34 -1. Download: [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]]
35 -1. (((
36 -Open up the certificate by double clicking on the downloaded file and choosing **Open**
37 -
41 +1. Download: [[attach:REMC1.cer]]
42 +1. Open up the certificate by double clicking on the downloaded file and choosing **Open**.
43 +\\ [[image:attach:Downloads.PNG||height="250"]][[image:attach:Open.PNG||height="250"]]
44 +\\
45 +1. On the Certificate information window that opens up choose **Install Certificate...** at the bottom of the window.
46 +\\[[image:attach:Install.PNG||height="400"]]
47 +\\
48 +1. Go through the wizard, accepting the default options.
49 +\\[[image:attach:Install2.PNG||thumbnail="true" height="250"]][[image:attach:Install3.PNG||thumbnail="true" height="250"]][[image:attach:Install4.PNG||thumbnail="true" height="250"]][[image:attach:Finished.PNG]]
38 38  
39 -[[image:attach:Downloads.PNG||data-xwiki-image-style-alignment="start" original-height="600" original-width="853" width="353"]][[image:attach:Open.PNG||original-height="310" original-width="414" width="326"]]
40 -
41 -)))
42 -1. (((
43 -On the Certificate information window that opens up choose **Install Certificate...** at the bottom of the window
44 -
51 += {{id name="Windows---Requires-Administrator-Privileges"/}}Windows - Requires Administrator Privileges =
45 45  
46 -[[image:attach:Install.PNG||original-height="521" original-width="419" width="319"]]
47 -
48 -)))
49 -1. (((
50 -Go through the wizard, accepting the default options
53 +1. Download: [[attach:REMC1CertSFX.exe]]
54 +1. Copy [[attach:REMC1CertSFX.exe]] onto the computer missing the certificate.
55 +1. Run: [[attach:REMC1CertSFX.exe]]
56 +1. When asked to extract, pick a place on your hard disk.
57 +[[image:attach:extract.PNG||alt="Windows 7-zip self-extracting archive display" title="Windows 7-zip self-extracting archive display"]]
58 +1. Navigate to that location and run "InstallREMC1CertVersion6.exe"
59 +[[image:attach:run.PNG||alt="Windows cert folder display" title="Windows cert folder display" height="250"]]
60 +1. When finished press enter:
61 +[[image:attach:enter.PNG||alt="Windows cert authority program display" title="Windows cert authority program display" height="250"]]
51 51  
52 -[[image:attach:Install2.PNG||data-xwiki-image-style-alignment="start" original-height="466" original-width="513" width="272"]][[image:attach:Install3.PNG||data-xwiki-image-style-alignment="start" original-height="466" original-width="513" width="272"]][[image:attach:Install4.PNG||original-height="466" original-width="513" width="272"]][[image:attach:Finished.PNG||original-height="171" original-width="261"]]
53 -
54 -)))
55 -1. Follow the directions on [[Connect Personal Machine to Wireless>>doc:PS.Windows.Windows 10.Connect Personal Machine to Wireless.WebHome]] to complete the connection
56 -
57 -= {{id name="Windows-–-Requires-Administrator-Privileges"/}}Windows – Requires Administrator Privileges =
58 -
59 -(% start="1" %)
60 -1. Download: [[REMC1CertSFX.exe>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1CertSFX.exe?version=1&modificationDate=1476119828000&cacheVersion=1&api=v2||shape="rect"]]
61 -1. Copy [[REMC1CertSFX.exe>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1CertSFX.exe?version=1&modificationDate=1476119828000&cacheVersion=1&api=v2||shape="rect"]] onto the computer missing the certificate
62 -1. Run: [[REMC1CertSFX.exe>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1CertSFX.exe?version=1&modificationDate=1476119828000&cacheVersion=1&api=v2||shape="rect"]]
63 -1. (((
64 -When asked to extract, pick a place on your hard disk
65 -
66 -[[Windows 7-zip self-extracting archive display>>image:attach:extract.PNG||alt="Windows 7-zip self-extracting archive display" original-height="157" original-width="386"]]
67 -)))
68 -1. (((
69 -Navigate to that location and run "InstallREMC1CertVersion6.exe"
70 -
71 -[[image:attach:run.PNG||alt="Windows cert folder display" data-xwiki-image-label="Windows cert folder display" data-xwiki-image-style-alignment="center" original-height="252" original-width="782"]]
72 -)))
73 -1. (((
74 -When finished press enter:
75 -
76 -[[image:attach:enter.PNG||alt="Windows cert authority program display" data-xwiki-image-label="Windows cert authority program display" original-height="512" original-width="979" width="476"]]
77 -
78 -)))
79 -1. Follow the directions on [[Connect Personal Machine to Wireless>>doc:PS.Windows.Windows 10.Connect Personal Machine to Wireless.WebHome]] to complete the connection
80 -
81 81  = {{id name="Mac-OSX"/}}Mac OSX =
82 82  
83 -(% start="1" %)
84 -1. Download [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]]
85 -1. Run the downloaded file
86 -1. In the window that pops up, change "Keychain" to "System"
87 -1*. (((
88 -[[Mac add certificate page display>>image:attach:installMac.png||alt="Mac add certificate page display" original-height="352" original-width="582"]]
89 -)))
90 -1. OSX may ask for a password before it will install
91 -1*. (((
92 -[[Mac keychain access username and password page display>>image:attach:password.png||alt="Mac keychain access username and password page display" original-height="375" original-width="545"]]
93 -)))
94 -1. Follow the directions on [[Connect Personal Machine to Wireless>>doc:PS.Windows.Windows 10.Connect Personal Machine to Wireless.WebHome]] to complete the connection
65 +1. Download [[attach:REMC1.cer]]
66 +1. Run the downloaded file(% class="anchor" %)
67 +1. In the window that pops up, change "Keychain" to "System"(% class="anchor" %)
68 +1*. [[image:attach:installMac.png||alt="Mac add certificate page display" title="Mac add certificate page display"]](% class="anchor" %)
69 +1. OSX may ask for a password before it will install.(% class="anchor" %)
70 +1*. [[image:attach:password.png||alt="Mac keychain access username and password page display" title="Mac keychain access username and password page display"]](% class="anchor" %)
95 95  
96 -= {{id name="Google-Chrome-Console"/}}Google Chrome Console =
72 += {{id name="Windows-AD-Server/Group-policy/Linux/Other"/}}Windows AD Server/Group policy/Linux/Other =
97 97  
98 -* [[https:~~/~~/support.google.com/chrome/a/answer/6342302?hl=en>>url:https://support.google.com/chrome/a/answer/6342302?hl=en||shape="rect"]]
99 -
100 -= {{id name="Certificate-Download---Windows-AD-Server/Group-policy/Linux/Other"/}}Certificate Download - Windows AD Server/Group policy/Linux/Other =
101 -
102 102  * Import the pem or cer file into your group policy to push out to windows clients. You can use the crt or pem on linux as well etc..
103 -** [[REMC1.crt>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.crt?version=1&modificationDate=1472743734000&cacheVersion=1&api=v2||shape="rect"]]
104 -** [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]]
105 -** [[remc-cert-authority-cert.pem>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/remc-cert-authority-cert.pem?version=1&modificationDate=1474994524000&cacheVersion=1&api=v2||shape="rect"]]
75 +** [[attach:REMC1.crt]]
76 +** [[attach:REMC1.cer]]
77 +** [[attach:remc-cert-authority-cert.pem]]
106 106  
79 +\\
107 107  
108 -
109 109  ----
110 110  
83 +\\
111 111  
112 -
85 +\\
Downloads.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391516a7b750068a46920
Size
... ... @@ -1,1 +1,0 @@
1 -87.5 KB
Content
Finished.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391516a7b750068a46920
Size
... ... @@ -1,1 +1,0 @@
1 -25.6 KB
Content
Install.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391516a7b750068a46920
Size
... ... @@ -1,1 +1,0 @@
1 -53.3 KB
Content
Install2.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391516a7b750068a46920
Size
... ... @@ -1,1 +1,0 @@
1 -71.0 KB
Content
Install3.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391516a7b750068a46920
Size
... ... @@ -1,1 +1,0 @@
1 -46.2 KB
Content
Install4.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391516a7b750068a46920
Size
... ... @@ -1,1 +1,0 @@
1 -76.2 KB
Content
InstallREMCCert.exe
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.steve@remc1_org
Size
... ... @@ -1,1 +1,0 @@
1 -171.0 KB
Content
Open.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391516a7b750068a46920
Size
... ... @@ -1,1 +1,0 @@
1 -29.2 KB
Content
REMC1.cer
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.steve@remc1_org
Size
... ... @@ -1,1 +1,0 @@
1 -1.1 KB
Content
REMC1.crt
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.steve@remc1_org
Size
... ... @@ -1,1 +1,0 @@
1 -1.6 KB
Content
REMC1CertSFX.exe
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391539b728c006a95cf09
Size
... ... @@ -1,1 +1,0 @@
1 -228.0 KB
Content
enter.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391539b728c006a95cf09
Size
... ... @@ -1,1 +1,0 @@
1 -12.7 KB
Content
extract.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391539b728c006a95cf09
Size
... ... @@ -1,1 +1,0 @@
1 -2.9 KB
Content
installMac.png
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a39401d442e60068439d9f
Size
... ... @@ -1,1 +1,0 @@
1 -132.3 KB
Content
password.png
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a39401d442e60068439d9f
Size
... ... @@ -1,1 +1,0 @@
1 -228.0 KB
Content
remc-cert-authority-cert.pem
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391539b728c006a95cf09
Size
... ... @@ -1,1 +1,0 @@
1 -1.6 KB
Content
run.PNG
Author
... ... @@ -1,1 +1,0 @@
1 -XWiki.62a391539b728c006a95cf09
Size
... ... @@ -1,1 +1,0 @@
1 -19.0 KB
Content
Code.ConfluencePageClass[0]
id
... ... @@ -1,1 +1,0 @@
1 -17172316
stableId
... ... @@ -1,1 +1,0 @@
1 -17172316
title
... ... @@ -1,1 +1,0 @@
1 -Installing REMC1 Certificate Authority
space
... ... @@ -1,1 +1,0 @@
1 -PS
Confluence.Code.ConfluencePageClass[0]
id
... ... @@ -1,0 +1,1 @@
1 +17188120
space
... ... @@ -1,0 +1,1 @@
1 +PS
stableId
... ... @@ -1,0 +1,1 @@
1 +17172316
title
... ... @@ -1,0 +1,1 @@
1 +Installing REMC1 Certificate Authority