When you configure your Firebox to use a certificate for HTTPS content inspection or authentication, you must import that certificate on each client device in your network to prevent security warnings in their web browsers. You can perform this import on each individual client device, or use group policies with Microsoft Active Directory to automatically install the certificate for all clients.
Watchguard free download - WatchGuard FireClient, WatchGuard AuthPoint, WatchGuard Mobile OTP, and many more programs. Enter to Search. Watchguard ssl vpn client. Install and Connect the Mobile VPN with SSL Client Watchguard.
Jan 12, 2016.
For HTTPS Proxy content inspection, you can use the default Proxy Authority Certificate Authority (CA) certificate on your device. If your organization already has a Public Key Infrastructure (PKI) set up with a trusted CA, you can import a certificate on your device that is signed by the internal CA.
For more information on content inspection and certificates, see Use Certificates with HTTPS Proxy Content Inspection.
For instructions on how to export a certificate from your Firebox, see Export a Certificate from Your Firebox.
When you export a certificate from your device, the certificate is saved in PEM format. For some certificate distribution methods, the preferred certificate format for import is the DER format. For information on how to convert certificate formats, see Convert Certificate Format.
Each client operating system and web browser has different methods to import certificates. Instructions for the most common operating systems and web browsers are described in the next sections. For other operating systems and browsers, see the manufacturer's documentation.
WatchGuard provides interoperability instructions to help our customers configure WatchGuard products to work with products created by other organizations. If you require more information or technical support about how to configure a non-WatchGuard product, see the documentation and support resources for that product.
Import a Certificate from the Certificate Portal on the Firebox
A client can download and install the Proxy Authority certificate from the Certificate Portal on the Firebox.
To download and install the certificate:
For more information, see Certificate Portal.
Import a Certificate on Windows Clients with Internet Explorer
When you install a certificate in the Trusted Root Certification Authorities with Internet Explorer, this enables the entire system, including other programs or services that use the Windows certificate store, to use that certificate for the currrent user. For example, the Google Chrome browser for Windows and Windows Update will also use any installed certificates.
If the certificate is in DER format, you can format the file name with an extension of .der, .cer, or .crt. You can then distribute this certificate to users who can double-click the certificate file to start the certificate installer on their system.
To import a certificate with Internet Explorer manually:
When you import a certificate through the Certificate Import Wizard, the certificate is imported into the stores of the current user. To import the certificate into the local machine stores so all users can use the certificate, you must double-click the certificate file and import it to the local machine stores.
![]() Import a Certificate on Windows Clients with Active Directory Group Policy
You can also deploy certificates to your Windows client devices through a group policy object from your Active Directory server. This enables you to update all Windows clients on your domain automatically with the required certificates.
For Windows Server 2012, 2012 R2, and 2016, see Distribute Certificates to Client Computers by Using Group Policy.
For more information, see the Microsoft documentation for your operating system.
Import a Certificate with Mozilla Firefox
You can manually import a certificate with Firefox or configure Firefox to automatically trust certificates in the Windows Certificate Store.
Watchguard Mobile Vpn With Ssl ClientManual Import
To manually import a certificate with Mozilla Firefox:
Use the Windows Certificate Store
To make certificate deployment easier, you can also configure Mozilla Firefox version 49 and higher to use the Windows Certificate Store. For example, if you deploy a certificate through Group Policy to the Windows Certificate Store, Firefox will automatically trust that certificate. For more information about Windows Certificate Store support in Firefox, see the Mozilla Wiki.
To configure Firefox on a single computer to use the Windows Certificate Store:
To configure Firefox on multiple computers to use the Windows Certificate Store:
To distribute the .js and .cfg files to Windows computers on your network, you can use Group Policy or a scripted Firefox installation.
Airport extreme download for mac. Jul 11, 2013.
To use Group Policy to distribute the files:
To perform a scripted Firefox installation, see the Mozilla installation configuration documentation.
Watchguard Firebox Ssl Vpn ClientImport a Certificate with macOS and Apple Safari
This process allows Safari and other programs or services that use the macOS certificate store to get access to the certificate.
Import a Certificate with an Apple iOS Device
To import a certificate with an Apple iOS device, such as an iPhone or iPad, you must use a DER format certificate file. For information on how to export a PEM format certificate from Firebox System Manager and convert it to DER format, see Export a Certificate from Your Firebox and Convert Certificate Format.
The certificate file can be distributed to users in several ways, such as email, website download, iOS configuration profile, or installation by the Simple Certificate Enrollment Protocol (SCEP).
![]()
If you receive a certificate file by email or website download, tap the certificate to add it to the device. For example, to add a certificate distributed by email:
If a warning message appears, you may safely ignore it at this time and tap Install. This message appears if the iOS device does not trust the signing authority for this certificate.
Watchguard Ssl Vpn Client For Mac
After you install the certificate, you must enable the certificate in the Certificate Trust Settings if your device has iOS 10.3 or higher:
Import a Certificate with an Android Device
The instructions to add a certificate to an Android device are different depending on the device manufacturer. These general rules apply:
Watchguard Firebox Ssl Client
For information on how to export a PEM format certificate from Firebox System Manager and convert it to DER format, see Export a Certificate from Your Firebox and Convert Certificate Format.
If you have a copy of the certificate on your device as an email attachment or file download, some devices allow you to tap the certificate to import it to your device.
To import a certificate saved to the internal storage of an Android device:
See AlsoClient Computer Requirements
You can install the Mobile VPN with SSL client software on computers with these operating systems:
If the client computer has Windows Vista or Windows XP, you must log on with an account that has administrator rights to install the Mobile VPN with SSL client software. Administrator rights are not required to connect after the SSL client has been installed and configured. In Windows XP Professional, the user must be a member of the Network Configuration Operators group to run the SSL client.
If the client computer has Mac OS X, administrator rights are not required to install or use the SSL client.
Download the Client Software
Luca Comments are closed.
|
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |