Version 37.1 by Alexander Holmes on 2026/08/19 16:32

Hide last authors
Jamie Jarvi 9.1 1 {{toc/}}
steve@remc1_org 1.1 2
Jamie Jarvi 9.1 3 = {{id name="General-Info"/}}General Info =
steve@remc1_org 1.1 4
Alexander Holmes 36.1 5 * In order for the Fortigate generated Deep Scanning certs to not generate an SSL warning you must import and Trust the REMC1 certificate authority cert.
6 * All Fortigate SSL certificates are dynamically generated from this certificate for Deep Scanning web filter/firewall profiles
7 * To quickly deploy the certificate push it out in the Machine section of Active Directory Group Policy under the Trusted CA authorities section.
8 * Firefox needs to have the certificate individually imported for each user. Firefox is not going to be feasible for deep scanning firewalls (all of them not just Fortigate). **Uninstall firefox.**
9 * Chrome, IE, Safari are feasible options. 
10 * If you are REMC1 staff and are looking for methods to deploy the certificate please read this page: [[Methods to Deploy REMC1 Certificate Authority>>doc:NET.Methods to Deploy REMC1 Certificate Authority.WebHome]]
steve@remc1_org 1.1 11
Alexander Holmes 36.1 12 = {{id name="iOS-(iPad,-iPod,-iPhone)"/}}iOS(% style="color: rgb(0,0,0);" %) (iPad, iPod, iPhone)(%%) =
steve@remc1_org 1.1 13
Alexander Holmes 36.1 14 (% start="1" %)
15 1. Visit this website with the IOS device on Guest Wireless (or from home etc).
16 1. Or email the certificate to the IOS device.
17 1. Download the [[REMC1 .crt >>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.crt?version=1&modificationDate=1472743734000&cacheVersion=1&api=v2||shape="rect"]]certificate file with the IOS device: [[ >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.crt||shape="rect"]]
Lauren Keller 26.1 18 1. On the IOS device tap "Install"
Eric Kemppainen 32.1 19 1. Follow the directions on [[Connect Device to Wireless>>url:https://confluence.remc1.net/display/PS/Connect+Device+to+Wireless||shape="rect"]] to complete the connection
steve@remc1_org 1.1 20
Alexander Holmes 36.1 21 = {{id name="Android"/}}Android(% style="color: rgb(0,0,0);" %) (%%) =
steve@remc1_org 1.1 22
Josh Hiner 33.1 23 * Connect them to GUEST if no LTE signal but remember to FORGET THE GUEST NETWORK as the last step or it will endlessly try to connect to it forever and pop up guest login prompts.
24 * OR Connect to LTE internet if possible, alternatively download the certificate onto a laptop and connect the phone with a USB cable.
Alexander Holmes 36.1 25 * Download [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]] and copy it to a secure location on the phone
26 ** (% style="color: rgb(255,0,0);" %)**IMPORTANT: **(% style="color: rgb(0,0,0);" %)We recommend(%%) moving this to a folder other than downloads. If you delete the above file, you will lose your connection to the wifi and have to do this process again.
Eric Kemppainen 30.1 27 * Follow the directions on [[Connect Device to Wireless>>url:https://confluence.remc1.net/display/PS/Connect+Device+to+Wireless||shape="rect"]] to complete the connection
steve@remc1_org 1.1 28
Lauren Keller 26.1 29 NOTE: You may need to turn wifi off and back on for the settings to take effect.
steve@remc1_org 1.1 30
62a391516a7b750068a46920 24.1 31 = {{id name="Windows---Without-Administrator"/}}Windows - Without Administrator =
steve@remc1_org 1.1 32
Alexander Holmes 36.1 33 (% start="1" %)
34 1. Download: [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]]
35 1. (((
36 Open up the certificate by double clicking on the downloaded file and choosing **Open**
37 \\
38
39 [[image:attach:Downloads.PNG||original-height="600" data-xwiki-image-style-alignment="start" width="353" original-width="853"]][[image:attach:Open.PNG||original-height="310" data-xwiki-image-style-alignment="start" width="326" original-width="414"]]
62a391516a7b750068a46920 25.1 40 \\
Alexander Holmes 36.1 41 )))
42 1. (((
43 On the Certificate information window that opens up choose **Install Certificate...** at the bottom of the window
62a391516a7b750068a46920 25.1 44 \\
Alexander Holmes 36.1 45
46 [[image:attach:Install.PNG||original-height="521" data-xwiki-image-style-alignment="start" width="319" original-width="419"]]
Lauren Keller 26.1 47 \\
Alexander Holmes 36.1 48 )))
49 1. (((
50 Go through the wizard, accepting the default options
51 \\
62a391516a7b750068a46920 24.1 52
Alexander Holmes 36.1 53 [[image:attach:Install2.PNG||original-height="466" data-xwiki-image-style-alignment="start" width="272" original-width="513"]][[image:attach:Install3.PNG||original-height="466" data-xwiki-image-style-alignment="start" width="272" original-width="513"]][[image:attach:Install4.PNG||original-height="466" data-xwiki-image-style-alignment="start" width="272" original-width="513"]][[image:attach:Finished.PNG||original-height="171" data-xwiki-image-style-alignment="start" original-width="261"]]
54 \\
55 )))
56 1. Follow the directions on [[Connect Personal Machine to Wireless>>doc:PS.Windows.Windows 10.Connect Personal Machine to Wireless.WebHome]] to complete the connection
57
Lauren Keller 26.1 58 = {{id name="Windows-–-Requires-Administrator-Privileges"/}}Windows – Requires Administrator Privileges =
62a391516a7b750068a46920 24.1 59
Alexander Holmes 36.1 60 (% start="1" %)
61 1. Download: [[REMC1CertSFX.exe>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1CertSFX.exe?version=1&modificationDate=1476119828000&cacheVersion=1&api=v2||shape="rect"]]
62 1. Copy [[REMC1CertSFX.exe>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1CertSFX.exe?version=1&modificationDate=1476119828000&cacheVersion=1&api=v2||shape="rect"]] onto the computer missing the certificate
63 1. Run: [[REMC1CertSFX.exe>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1CertSFX.exe?version=1&modificationDate=1476119828000&cacheVersion=1&api=v2||shape="rect"]]
64 1. (((
65 When asked to extract, pick a place on your hard disk\\
66
67
68
69 [[Windows 7-zip self-extracting archive display>>image:attach:extract.PNG||original-height="157" data-xwiki-image-style-alignment="start" alt="Windows 7-zip self-extracting archive display" original-width="386"]]
70 )))
71 1. (((
72 Navigate to that location and run "InstallREMC1CertVersion6.exe"\\
73
74
75
76 [[Windows cert folder display>>image:attach:run.PNG||original-height="252" data-xwiki-image-style-alignment="center" alt="Windows cert folder display" original-width="782"]]
Lauren Keller 26.1 77 \\
Alexander Holmes 36.1 78 )))
79 1. (((
80 When finished press enter:\\
81
82
83
84 [[Windows cert authority program display>>image:attach:enter.PNG||original-height="512" data-xwiki-image-style-alignment="start" alt="Windows cert authority program display" width="476" original-width="979"]]
Lauren Keller 26.1 85 \\
Alexander Holmes 36.1 86 )))
87 1. Follow the directions on [[Connect Personal Machine to Wireless>>doc:PS.Windows.Windows 10.Connect Personal Machine to Wireless.WebHome]] to complete the connection
steve@remc1_org 1.1 88
Jamie Jarvi 11.1 89 = {{id name="Mac-OSX"/}}Mac OSX =
steve@remc1_org 1.1 90
Alexander Holmes 36.1 91 (% start="1" %)
92 1. Download [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]]
Lauren Keller 26.1 93 1. Run the downloaded file
94 1. In the window that pops up, change "Keychain" to "System"
Alexander Holmes 36.1 95 1*. (((
96 [[Mac add certificate page display>>image:attach:installMac.png||original-height="352" data-xwiki-image-style-alignment="start" alt="Mac add certificate page display" original-width="582"]]
97 )))
Lauren Keller 26.1 98 1. OSX may ask for a password before it will install
Alexander Holmes 36.1 99 1*. (((
100 [[Mac keychain access username and password page display>>image:attach:password.png||original-height="375" data-xwiki-image-style-alignment="start" alt="Mac keychain access username and password page display" original-width="545"]]
101 )))
102 1. Follow the directions on [[Connect Personal Machine to Wireless>>doc:PS.Windows.Windows 10.Connect Personal Machine to Wireless.WebHome]] to complete the connection
steve@remc1_org 1.1 103
Josh Hiner 27.1 104 = {{id name="Google-Chrome-Console"/}}Google Chrome Console =
105
106 * [[https:~~/~~/support.google.com/chrome/a/answer/6342302?hl=en>>url:https://support.google.com/chrome/a/answer/6342302?hl=en||shape="rect"]]
107
server@remc1_org 28.1 108 = {{id name="Certificate-Download---Windows-AD-Server/Group-policy/Linux/Other"/}}Certificate Download - Windows AD Server/Group policy/Linux/Other =
Jamie Jarvi 9.1 109
Josh Hiner 23.1 110 * Import the pem or cer file into your group policy to push out to windows clients. You can use the crt or pem on linux as well etc..
Alexander Holmes 36.1 111 ** [[REMC1.crt>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.crt?version=1&modificationDate=1472743734000&cacheVersion=1&api=v2||shape="rect"]]
112 ** [[REMC1.cer>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/REMC1.cer?version=2&modificationDate=1472743697000&cacheVersion=1&api=v2||shape="rect"]]
113 ** [[remc-cert-authority-cert.pem>>url:https://remc1.atlassian.net/wiki/download/attachments/17172316/remc-cert-authority-cert.pem?version=1&modificationDate=1474994524000&cacheVersion=1&api=v2||shape="rect"]]
Jamie Jarvi 9.1 114
62a391539b728c006a95cf09 22.1 115 \\
steve@remc1_org 1.1 116
Jamie Jarvi 9.1 117 ----
steve@remc1_org 1.1 118
62a391539b728c006a95cf09 22.1 119 \\
steve@remc1_org 1.1 120
62a391539b728c006a95cf09 22.1 121 \\