Wiki source code of REMC1 Certificate Authority
Version 4.1 by 62a39401d442e60068439d9f on 2016/09/06 06:23
Hide last authors
| author | version | line-number | content |
|---|---|---|---|
| |
1.1 | 1 | |
| 2 | |||
| 3 | == {{id name="General-Info"/}}General Info == | ||
| 4 | |||
| 5 | (% class="anchor" style="color: rgb(0,0,0);" %) | ||
| 6 | |||
| 7 | * In order for the Fortigate generated Deep Scanning certs to not generate an SSL warning you must import and Trust the REMC1 certificate authority cert.(% class="anchor" %) | ||
| 8 | * All Fortigate SSL certificates are dynamically generated from this certificate for Deep Scanning webfilter/firewall profiles(% class="anchor" %) | ||
| 9 | * To quickly deploy the certificate push it out in the Machine section of Active Directory Group Policy under the Trusted CA authorities section.(% class="anchor" %) | ||
| 10 | * Firefox needs to have the certificate individually imported for each user. Firefox is not going to be feasible for deep scanning firewalls (all of them not just Fortigate). **Uninstall firefox.**(% class="anchor" %) | ||
| 11 | * Chrome, IE, Safari are feasible options.(% class="anchor" %) | ||
| 12 | |||
| 13 | (% class="line867" %) | ||
| 14 | |||
| 15 | |||
| 16 | == {{id name="IOS"/}}IOS == | ||
| 17 | |||
| 18 | (% class="anchor" style="color: rgb(0,0,0);" %) | ||
| 19 | |||
| 20 | 1. Visit this website with the IOS device on Guest Wireless (or from home etc).(% class="anchor" %) | ||
| 21 | 1. Or email the certificate to the IOS device.(% class="anchor" %) | ||
| |
3.1 | 22 | 1. Download the [[REMC1 .crt >>attach:REMC1.crt]]certificate file with the IOS device: [[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.crt||title="" shape="rect" class="attachment"]] |
| |
1.1 | 23 | 1. On the IOS device tap "Install"(% class="anchor" %) |
| 24 | |||
| 25 | (% class="line867" %) | ||
| 26 | |||
| 27 | |||
| 28 | == {{id name="Android"/}}Android == | ||
| 29 | |||
| 30 | (% class="anchor" style="color: rgb(0,0,0);" %) | ||
| 31 | |||
| 32 | * NOTE: These instructions were written for an HTC One VX, with Sense UI, running Android 4.1.2. Different manufacturers/UI variants and different versions of Android (especially android 2.1 or lower) may have different methods for adding certificate authorities.(% class="anchor" %) | ||
| 33 | * Add the device to wireless(% class="anchor" %) | ||
| |
4.1 | 34 | * Download [[attach:REMC1.cer]][[ and copy it to the root of the SD card.(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.cer||title="" shape="rect" class="attachment"]] |
| |
1.1 | 35 | * Go to settings > security(% class="anchor" %) |
| 36 | * Select "Install from Storage"(% class="anchor" %) | ||
| 37 | * Type REMC1 and press ok.(% class="anchor" %) | ||
| 38 | * Go to settings > wifi(% class="anchor" %) | ||
| 39 | * Press & hold the staff or student network(% class="anchor" %) | ||
| 40 | * Tap "Modify Settings"(% class="anchor" %) | ||
| 41 | * Check "Show advanced settings"(% class="anchor" %) | ||
| 42 | * Tap "CA Certificate"(% class="anchor" %) | ||
| 43 | * Select the REMC1 certificate(% class="anchor" %) | ||
| 44 | * Tap "Save"(% class="anchor" %) | ||
| 45 | |||
| 46 | (% class="line874" %) | ||
| 47 | NOTE: You may need to turn wifi off and back on for the settings to take effect.(% class="anchor" %) | ||
| 48 | |||
| 49 | (% class="line867" %) | ||
| 50 | |||
| 51 | |||
| 52 | == {{id name="Windows-Instructions"/}}Windows Instructions == | ||
| 53 | |||
| 54 | (% class="anchor" style="color: rgb(0,0,0);" %) | ||
| 55 | |||
| 56 | (% class="line867" %) | ||
| 57 | |||
| 58 | |||
| 59 | === {{id name="Install-the-certificate"/}}Install the certificate === | ||
| 60 | |||
| 61 | (% class="anchor" style="color: rgb(0,0,0);" %) | ||
| 62 | |||
| |
4.1 | 63 | 1. Download: [[InstallREMCCert.exe>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]][[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]](%%)[[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]] |
| |
3.1 | 64 | 1. Copy [[I>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]][[attach:InstallREMCCert.exe]] onto the computer missing the certificate.(% class="anchor" %) |
| |
2.1 | 65 | 1*. [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=window.PNG||alt="window.PNG" class="attachment"]](% class="anchor" %) |
| |
4.1 | 66 | 1. Run: [[InstallREMCCert.exe>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]][[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]] |
| |
1.1 | 67 | 1. Click 'Yes'(% class="anchor" %) |
| |
2.1 | 68 | 1*. [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=install.PNG||alt="install.PNG" class="attachment"]](% class="anchor" %) |
| |
1.1 | 69 | 1. Click 'Ok'(% class="anchor" %) |
| 70 | |||
| 71 | (% class="line867" %) | ||
| |
2.1 | 72 | [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=complete.PNG||alt="complete.PNG" class="attachment"]](% class="anchor" %) |
| |
1.1 | 73 | |
| 74 | (% class="line867" %) | ||
| 75 | |||
| 76 | |||
| 77 | == {{id name="Mac-OSX-instructions"/}}Mac OSX instructions == | ||
| 78 | |||
| 79 | (% class="anchor" style="color: rgb(0,0,0);" %) | ||
| 80 | |||
| |
4.1 | 81 | 1. Download [[REMC1.cer>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.cer||title="" shape="rect" class="attachment"]][[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.cer||title="" shape="rect" class="attachment"]] |
| |
1.1 | 82 | 1. Run the downloaded file(% class="anchor" %) |
| 83 | 1. In the window that pops up, change "Keychain" to "System"(% class="anchor" %) | ||
| |
2.1 | 84 | 1*. [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=installMac.png||alt="installMac.png" class="attachment"]](% class="anchor" %) |
| |
1.1 | 85 | 1. OSX may ask for a password before it will install.(% class="anchor" %) |
| |
2.1 | 86 | 1*. [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=password.png||alt="password.png" class="attachment"]](% class="anchor" %) |
| |
1.1 | 87 | |
| 88 | (% class="line867" %) | ||
| 89 | |||
| 90 | |||
| 91 | == {{id name="Deploying-the-certificate"/}}Deploying the certificate == | ||
| 92 | |||
| 93 | (% class="anchor" style="color: rgb(0,0,0);" %) | ||
| 94 | |||
| 95 | * If you are trying to mass deploy the certificate please see: [[DeployREMC1CertificateAuthority>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority||shape="rect"]] |