证书管理
您可以在仪表板上的 The dashboard includes a 证书Certificates部分查看证书列表。要查看详细信息或修改证书,请点击表格中选定的项目。 section to import, view, and delete certificates. Clicking a certificate row opens the certificate editor.
Certificates list
要导入新的证书,请点击 Certificates are displayed in a sortable, paginated table. The list includes both client certificates and Certificate Authorities (CA).
Filters
At the top of the page you can enable filters using the chip list. Some filters are mutually exclusive.
导入证书All按钮。:可以导入两种类型的证书:show all certificates.- Client: show client certificates only.
- Certificate Authority (CA): show CA certificates only.
- Search: shows a text field (label Name or filename) to search by certificate name or imported filename.
- Without user: show client certificates not associated with any user.
Table columns
- Name
- Type
- Expiration
- User (shown for client certificates)
- Imported filename
- Import date
Actions
- Open certificate: click a row to open the certificate editor.
- Delete certificate: available only when the certificate is not associated with users/policies and is not used by devices. The action can also be disabled when the license is expired.
- Multi-row selection: you can enable multi-row selection to delete multiple certificates at once. Only deletable certificates can be selected.
- Refresh: reload the certificates list.
Import certificates
To import certificates, click Import certificate and select one or more files. Supported formats are shown in the tooltip of the import button.
客户端
客户端
支持的格式:Supported format: base-64 编码的encoded PKCS#12。PKCS#12 (.p12 / .pfx).
这些是用于在企业网络中标识用户或设备的证书。 Client certificates identify a user or a device on the enterprise network. Client certificates can be associated with a specific user.
每个客户端证书可以选择性地分配给特定用户:这允许在许多设备上部署相同的 WiFiEach client certificate can be optionally assigned to a specific user: this allows deploying the same Wi‑Fi EAP 配置。您可以在策略的configuration on many devices. You can do that in the policy's 网络配置network configuration 部分,使用section, using the 用户 EAP 凭据credentials from users 选项。要分配用户,请从表格中打开证书(单击表格中的项目),然后单击option. 用户 字段中的图标。
或者,您也可以从用户页面分配证书给用户。
证书颁发机构 (CA)
支持的格式:Supported formats: base-64 编码的encoded X.509 (.crt / .pem / .cer / .der).
这些是标识证书颁发机构的证书。它指示设备信任由 CA 颁发的任何证书。certificates identify a Certificate Authority and indicate to the device that any certificates issued by the CA should be trusted. The dashboard validates that an imported X.509 certificate is a CA.
Certificate editor
When you open a certificate, the editor shows its main fields and a read-only Certificate information panel.
Main fields
- Name (required)
- Id (read-only)
- Type (read-only)
- Expiration (read-only)
- Import date (read-only)
- Imported filename (read-only)
User association (client certificates)
For Client certificates, the editor shows a User field. If a user is assigned, a menu allows you to Open user, Change user, or Disassociate user. If no user is assigned, you can assign one using the user action button.
Delete certificate
The delete action is disabled when the certificate is currently associated with a user or used in policies. It can also be disabled when the license is expired.