Changes for page Push Certificate Authority Via Google Chrome Management
Last modified by lmotowski@remc1_org on 2026/08/19 16:33
From version 4.1
edited by lmotowski@remc1_org
on 2026/08/19 16:33
on 2026/08/19 16:33
Change comment:
Rename [xwiki:Confluence.Code.ConfluencePageClass] objects into [xwiki:Code.ConfluencePageClass]
To version 2.1
edited by Josh Hiner
on 2019/03/06 12:13
on 2019/03/06 12:13
Change comment:
There is no comment for this version
Summary
-
Page properties (2 modified, 0 added, 0 removed)
-
Objects (0 modified, 1 added, 1 removed)
Details
- Page properties
-
- Author
-
... ... @@ -1,1 +1,1 @@ 1 -XWiki. lmotowski@remc1_org1 +XWiki.josh@remc1_org - Content
-
... ... @@ -1,16 +1,11 @@ 1 1 = {{id name="General-Info"/}}General Info = 2 2 3 3 * If you are doing this for deep scanning you need to exempt the Google log-in sites from deep scanning by using FQDN address entries 4 -* The addresses are found here in their SSL inspection HowTo page: [[https:~~/~~/support.google.com/chrome/a/answer/6334001?hl=en&ref_topic=3504941>>url:https://support.google.com/chrome/a/answer/6334001?hl=en&ref_topic=3504941||shape="rect"]] 4 +* The addresses are found here in their SSL inspection Howto page: [[https:~~/~~/support.google.com/chrome/a/answer/6334001?hl=en&ref_topic=3504941>>url:https://support.google.com/chrome/a/answer/6334001?hl=en&ref_topic=3504941||shape="rect"]] 5 +* WARNING: You can push certs to a subdomain but they WILL NOT trust. Each user would have to trust them. That is not feasible. You cant push and trust certs to student.domain.com for instance. You can do this for domain.com though as long as the users/devices are in the root domain. 5 5 6 -{{error}} 7 -You can push certs to a subdomain but they **WILL NOT** trust. Each user would have to trust them. That is not feasible. You cant push and trust certs to [[student.domain.com>>url:http://student.domain.com||shape="rect"]] for instance. You can do this for [[domain.com>>url:http://domain.com||shape="rect"]] though as long as the users/devices are in the root domain. 8 -{{/error}} 7 += {{id name="Howto"/}}Howto = 9 9 10 -\\ 11 - 12 -= {{id name="HowTo"/}}HowTo = 13 - 14 14 (% style="text-align: left;" %) 15 15 1. [[Sign in>>url:https://admin.google.com/||style="text-decoration: none;" shape="rect"]] to the [[Google Admin console>>url:https://support.google.com/a/answer/182076||style="text-decoration: none;" shape="rect" class="glossary-term"]]. 16 16 1. Click **Device management**. ... ... @@ -23,7 +23,7 @@ 23 23 **Note: **DER-encoded certificates are not supported. Chrome devices only accept PEM format. 24 24 1. (Optional) If the certificate will be used as a root CA for an SSL-inspecting web filter or to allow the browser to validate the full digital certificate chain of servers, check the **Use this certificate as an HTTPS certificate authority** box. 25 25 1. Click **Save** and then **Done** to confirm. 26 -1. You will need a way for chrome devices to get the cert/sync the new policy. Don 't enable deep scanning until the cert is pushed (or disable deep scanning until the policy is pushed).21 +1. You will need a way for chrome devices to get the cert/sync the new policy. Dont enable deep scanning until the cert is pushed (or disable deep scanning until the policy is pushed). 27 27 28 28 \\ 29 29 ... ... @@ -48,6 +48,6 @@ 48 48 49 49 ==== {{id name="To-simply-look-at-the-cert-in-settings"/}}To simply look at the cert in settings ==== 50 50 51 -1. In the address bar type chrome:~/~/settings/certificates46 +1. In the addressbar type chrome:~/~/settings/certificates 52 52 1. Click on the Authorities tab 53 53 1. You should see the certificate in the list with a building icon next to it (which means the cert is pushed via google console
- Code.ConfluencePageClass[0]
-
- stableId
-
... ... @@ -1,1 +1,0 @@ 1 -17171060 - title
-
... ... @@ -1,1 +1,0 @@ 1 -Push Certificate Authority Via Google Chrome Management - space
-
... ... @@ -1,1 +1,0 @@ 1 -PS - id
-
... ... @@ -1,1 +1,0 @@ 1 -17171060
- Confluence.Code.ConfluencePageClass[0]
-
- id
-
... ... @@ -1,0 +1,1 @@ 1 +711950436 - space
-
... ... @@ -1,0 +1,1 @@ 1 +PS - stableId
-
... ... @@ -1,0 +1,1 @@ 1 +17171060 - title
-
... ... @@ -1,0 +1,1 @@ 1 +Push Certificate Authority Via Google Chrome Management