Integrated SSL Scanning
Page 7 Finjan proprietary and confidential
certificate, which will be imported into Vital Security. This procedure
makes the process of exporting the certificate to end-users unnecessary.
2.3.3 Import Certificate
Vital Security system supports two types of certificate import.
• Importing a signed certificate signed by the CA after a CSR was
created by Vital Security.
• System administrators import the certificate into the system
together with the private key.
The format of the imported certificatd should be the PEM format.
2.4 Authority Information Access
Authority Information Access (AIA) is an SSL extension that indicates to
the browser how it should get information about the Certificate Authority of
the issuer of the SSL certificate. One method of Web servers is to send
the end-user the full certificate chain, after which the end-user’s browser
validates the server’s certificate and the issuer’s certificate. With AIA, the
Web server sends only the end-user’s own SSL certificate, which includes
a link to the issuers of the certificate. The end-user’s browser then follows
that link and validates the issuers of the SSL certificate.
AIA support includes two components: