This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to automate certificate imports?

Hi,

we're planning to shorten our certifcates lifetimes and for this reason we are looking how to automate our certificate handling.

Is there a way to import certficates into the UTM without user interaction?

Thanks in advance

Michael



This thread was automatically locked due to age.
Parents
  • More and more people are going to be asking for this same feature. Having certificates with a long lifetime is bad security practice, so having a way to have the firewall automatically request renewed certificate is essential. With the advent of free certificates from letsencypt.org (now open to the public) many will be expecting this feature. Being able to load them from another host would also (possibly more so) be important since if you encrypt end-to-end you need the certificate on both the webserver and the firewall.
  • is sophos storing the certifcates you upload via webgui in a database? I cannot find them on the filesystem. Maybe there allready is a way to manually import a certificate via CLI over a SSH connection. That would make it scriptable. Anyone?

    ---

    Sophos UTM 9.3 Certified Engineer

Reply
  • is sophos storing the certifcates you upload via webgui in a database? I cannot find them on the filesystem. Maybe there allready is a way to manually import a certificate via CLI over a SSH connection. That would make it scriptable. Anyone?

    ---

    Sophos UTM 9.3 Certified Engineer

Children
No Data