Wiki source code of REMC1 Certificate Authority

Version 5.1 by 62a39401d442e60068439d9f on 2016/09/06 06:24

Hide last authors
steve@remc1_org 1.1 1
2
3 == {{id name="General-Info"/}}General Info ==
4
5 (% class="anchor" style="color: rgb(0,0,0);" %)
6
7 * In order for the Fortigate generated Deep Scanning certs to not generate an SSL warning you must import and Trust the REMC1 certificate authority cert.(% class="anchor" %)
8 * All Fortigate SSL certificates are dynamically generated from this certificate for Deep Scanning webfilter/firewall profiles(% class="anchor" %)
9 * To quickly deploy the certificate push it out in the Machine section of Active Directory Group Policy under the Trusted CA authorities section.(% class="anchor" %)
10 * Firefox needs to have the certificate individually imported for each user. Firefox is not going to be feasible for deep scanning firewalls (all of them not just Fortigate). **Uninstall firefox.**(% class="anchor" %)
11 * Chrome, IE, Safari are feasible options.(% class="anchor" %)
12
13 (% class="line867" %)
14
15
16 == {{id name="IOS"/}}IOS ==
17
18 (% class="anchor" style="color: rgb(0,0,0);" %)
19
20 1. Visit this website with the IOS device on Guest Wireless (or from home etc).(% class="anchor" %)
21 1. Or email the certificate to the IOS device.(% class="anchor" %)
steve@remc1_org 3.1 22 1. Download the [[REMC1 .crt >>attach:REMC1.crt]]certificate file with the IOS device: [[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.crt||title="" shape="rect" class="attachment"]]
steve@remc1_org 1.1 23 1. On the IOS device tap "Install"(% class="anchor" %)
24
25 (% class="line867" %)
26
27
28 == {{id name="Android"/}}Android ==
29
30 (% class="anchor" style="color: rgb(0,0,0);" %)
31
32 * NOTE: These instructions were written for an HTC One VX, with Sense UI, running Android 4.1.2. Different manufacturers/UI variants and different versions of Android (especially android 2.1 or lower) may have different methods for adding certificate authorities.(% class="anchor" %)
33 * Add the device to wireless(% class="anchor" %)
62a39401d442e60068439d9f 4.1 34 * Download [[attach:REMC1.cer]][[ and copy it to the root of the SD card.(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.cer||title="" shape="rect" class="attachment"]]
steve@remc1_org 1.1 35 * Go to settings > security(% class="anchor" %)
36 * Select "Install from Storage"(% class="anchor" %)
37 * Type REMC1 and press ok.(% class="anchor" %)
38 * Go to settings > wifi(% class="anchor" %)
39 * Press & hold the staff or student network(% class="anchor" %)
40 * Tap "Modify Settings"(% class="anchor" %)
41 * Check "Show advanced settings"(% class="anchor" %)
42 * Tap "CA Certificate"(% class="anchor" %)
43 * Select the REMC1 certificate(% class="anchor" %)
44 * Tap "Save"(% class="anchor" %)
45
46 (% class="line874" %)
47 NOTE: You may need to turn wifi off and back on for the settings to take effect.(% class="anchor" %)
48
49 (% class="line867" %)
50
51
52 == {{id name="Windows-Instructions"/}}Windows Instructions ==
53
54 (% class="anchor" style="color: rgb(0,0,0);" %)
55
56 (% class="line867" %)
57
58
59 === {{id name="Install-the-certificate"/}}Install the certificate ===
60
61 (% class="anchor" style="color: rgb(0,0,0);" %)
62
62a39401d442e60068439d9f 5.1 63 1. Download: [[InstallREMCCert.exe>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]][[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]](%%)[[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]](%%)[[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]]
steve@remc1_org 3.1 64 1. Copy [[I>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]][[attach:InstallREMCCert.exe]] onto the computer missing the certificate.(% class="anchor" %)
steve@remc1_org 2.1 65 1*. [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=window.PNG||alt="window.PNG" class="attachment"]](% class="anchor" %)
62a39401d442e60068439d9f 4.1 66 1. Run: [[InstallREMCCert.exe>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]][[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=InstallREMCCert.exe||title="" shape="rect" class="attachment"]]
steve@remc1_org 1.1 67 1. Click 'Yes'(% class="anchor" %)
steve@remc1_org 2.1 68 1*. [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=install.PNG||alt="install.PNG" class="attachment"]](% class="anchor" %)
steve@remc1_org 1.1 69 1. Click 'Ok'(% class="anchor" %)
70
71 (% class="line867" %)
steve@remc1_org 2.1 72 [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=complete.PNG||alt="complete.PNG" class="attachment"]](% class="anchor" %)
steve@remc1_org 1.1 73
74 (% class="line867" %)
75
76
77 == {{id name="Mac-OSX-instructions"/}}Mac OSX instructions ==
78
79 (% class="anchor" style="color: rgb(0,0,0);" %)
80
62a39401d442e60068439d9f 4.1 81 1. Download [[REMC1.cer>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.cer||title="" shape="rect" class="attachment"]][[(% class="anchor" %) >>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=view&target=REMC1.cer||title="" shape="rect" class="attachment"]]
steve@remc1_org 1.1 82 1. Run the downloaded file(% class="anchor" %)
83 1. In the window that pops up, change "Keychain" to "System"(% class="anchor" %)
steve@remc1_org 2.1 84 1*. [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=installMac.png||alt="installMac.png" class="attachment"]](% class="anchor" %)
steve@remc1_org 1.1 85 1. OSX may ask for a password before it will install.(% class="anchor" %)
steve@remc1_org 2.1 86 1*. [[image:url:https://wiki.remc1.net/DeployREMC1CertificateAuthority?action=AttachFile&do=get&target=password.png||alt="password.png" class="attachment"]](% class="anchor" %)
steve@remc1_org 1.1 87
88 (% class="line867" %)
89
90
91 == {{id name="Deploying-the-certificate"/}}Deploying the certificate ==
92
93 (% class="anchor" style="color: rgb(0,0,0);" %)
94
95 * If you are trying to mass deploy the certificate please see: [[DeployREMC1CertificateAuthority>>url:https://wiki.remc1.net/DeployREMC1CertificateAuthority||shape="rect"]]