Automatic certificate updates with manual certificate generation in CertManager

Follow these steps for configuring automatic certificate update in HCL SafeLinx with manual certificate generation in CertManager.

About this task

Setup procedure for manual certificate generation:
  1. Submit Certificate Request from Certificate Store
    1. Access CertManager on the Domino server.
    2. Select Add TLS Credentials in the Certificate Store.
    3. Choose Create Exportable Key and set a strong password.
    4. Specify SafeLinx server name as Host names, Domino server with access in Server with access fields.
    5. Select Certificate Provider as manual and appropriate Certificate authority.
    6. Paste the certificates provided by CA.
    7. Submit the request.
    8. After successful certificate generation, Use Export TLS credentials to export the generated certificate as a P12 file with the provided password.
  2. SafeLinx Configuration
    1. Add/update the existing SafeLinx configuration:

      Provide the path of the generated P12 file in PKCS12 keystore file.

      Update the Keystore password with the password used during P12 file generation.

      Enable Enable Automatic Certificate Update.

      Configure the time interval for certificate updates, at Time interval to check for certificate updates (hrs) field.

      Keep 80 port entry in Redirect HTTP ports in the General tab.

    2. Save changes and restart the SafeLinx server for the changes to take effect.
  3. Access SafeLinx Service URL to verify the certificate details.

Results

You have successfully configured SafeLinx for the first time with manual certificate generation in CertManager. The setup ensures secure communication between SafeLinx and other servers, with automatic certificate updates facilitated by CertManager and ACME providers.