Adding a Server Certificate

This screen creates a new server certificate which will be used to verify the identity of the server to the clients.     The server certificate will be signed by the certificate authority chosen or created previously in the wizard. In most cases, as with this example, the same information from the previous step is used and it will be pre-filled on the form automatically.

Descriptive Name This is the Common Name (CN) field for the server certificate and is also used to reference the certificate in AZTCO-F. Using the hostname of the firewall is a common choice for a server certificate, such as vpn.example.com. Although using spaces in this field is allowed, we strongly discourage using spaces in a Common Name field because clients tend to have issues handling them properly.

Key Length Size of the key which will be generated. The larger the key, the more security it offers but larger keys are generally slower to use. 2048 is a good choice.

Lifetime Lifetime in days. This is commonly set to 3650 (Approximately 10 years).

Country Code Two-letter ISO country code (e.g. US, AU, CA)

State or Province Full State of Province name, not abbreviated (e.g. Texas, Indiana, Ontario).

City City or other Locality name (e.g. Austin, Indianapolis, Toronto).

Organization Organization name, often the Company or Group name. Do not use any special charac- ters in this field, not even punctuation such as a period or comma.

E-Mail E-mail address for the Certificate contact. Often the e-mail of the person generating the certifi- cate. (e.g. [email protected])

Click Create New Certificate to store the settings and continue to the next step of the wizard.