Certif icate Management
NetLinx Studio provides an interface to help you import certificate files to and export or delete certificate files from NX-Series controllers. Certificate files are used on NX-Series controllers for the enhanced security features. NX-Series controllers support
X.509 certificates in pem (Privacy-enhanced Electronic Mail), crt, and jks (Java KeyStore) formats. You can receive all available certificates, but you can only remove User/Public certificates. You must select the Certificates you want to receive or remove within the table of certificates. You can transfer a single certificate file to multiple devices sequentially with one click of a button.
Select Tools > Certif icate Management to access the Certificate Management dialog (FIG. 297). You can use this dialog to import, export, or delete certificate files from a Master.
FIG. 297 Certificate Management dialog - Certificate Receive tab
NOTE: For information on creating your own public and private key pairs and certificates, consult Appendix B of the NX-Series Controllers WebConsole and Programming Guide located at www.amx.com.
Importing a Certif icate File onto a Master
NetLinx Studio provides an interface to help you import certificate files to NX-Series controllers. Certificate files are used on NX-Series controllers for the enhanced security features. NX-Series controllers support X.509 certificates in pem
(Privacy-enhanced Electronic Mail), crt, and jks (Java KeyStore) formats. You can transfer a single certificate file to multiple devices sequentially with one click of a button.
Follow these steps to import a certificate file onto a Master:
- Select Tools > Certif icate Management to open the Certificate Management dialog.
- Click the Certificate Transfers tab (FIG. 298).
FIG. 298 Certificate Management dialog - Certificate Transfers tab
- Click the Browse button in the Certificate File to Transfer area and navigate to a location containing a valid certificate file. Select the certificate file and click OK to continue.
- Select a certificate type from the Certificate Type options menu.
- Indicate the device number in the Device field. The default setting is 0 for a NetLinx Controller, but you can transfer the certificate file to other devices by changing the device number.
- In the List of NetLinx Controllers area, add one or more destinations for the certificate file using any of the following methods:
- Click Add to open the New TCP/IP Setting dialog and add an IP address to the transfer table.
- Click Listen for Masters to open the Listen for Masters dialog so you can select any detected devices on your subnet to the transfer table.
- Click Import IP Addresses to open the Import IP Address List File dialog to import a saved file of IP addresses to the transfer table.
- Click Network History Addresses to open the Network History Selection dialog so you can select one or more controllers from your history to receive the certificate file.
- After you have added all devices to the transfer table, select the devices you want to receive the certificate file by clicking the check box beside the IP address for the device.
- Click Send. NetLinx Studio transfers the certificate file to the devices at the selected IP addresses. The Transfer Status area displays status information throughout the process of the transfer.
- Click Done when finished to close the dialog.
Receiving a Certif icate File from a Master
NetLinx Studio provides an interface to help you export certificate files from NX-Series controllers. Certificate files are used on NX-Series controllers for the enhanced security features. NX-Series controllers support X.509 certificates in pem
(Privacy-enhanced Electronic Mail), crt, and jks (Java KeyStore) formats. You can receive any available certificates that are not classified as Installed/Private or User/Private. You must select the Certificates you want to receive within the table of certificates. You can receive anywhere from one to multiple certificate files with one click of a button.
Follow these steps to receive a certificate file from a Master:
- Select Tools > Certif icate Management to open the Certificate Management dialog (FIG. 297).
- In the Device Certificates area, select any certificate files you want to receive from the device by clicking the check box beside the name of the certificate file. You can receive (export) any certificate file on the Master with the exception of files containing private keys.
- Click the Browse button in the Directory to Receive Certificate File(s) area and navigate to the location where you want to save the certificate files. Select the location and click OK to continue.
- In the Device Certificates area, click Receive Certif icate(s). NetLinx Studio exports the certificate file to the location you specified. The Status area displays status information throughout the process of the file transfer.
- Click Done when finished to close the dialog.
Deleting a Certif icate File from a Master
NetLinx Studio provides an interface to help you delete certificate files from NX-Series controllers. Certificate files are used on NX-Series controllers for the enhanced security features. NX-Series controllers support X.509 certificates in pem
(Privacy-enhanced Electronic Mail), crt, and jks (Java KeyStore) formats. You can receive all available certificates, but you can only remove User/Public certificate files. You must select the Certificates you want to remove within the table of certificates.
Follow these steps to delete a certificate file from a Master:
- Select Tools > Certif icate Management to open the Certificate Management dialog (FIG. 297).
- In the Device Certificates area, select any certificate files you want to remove from the device by clicking the check box beside the name of the certificate file. You can only remove User/Public certificate files.
- Click Remove Certif icate(s) and click Yes to confirm that you want to delete the files from the device.
- Click Done when finished to close the dialog.