Integrated SSL Scanning
Page 6 Finjan proprietary and confidential
2.2.6 Certificate is Not Currently Valid
Field Description
Certificate is not yet valid The notBefore date is after the
current time.
Certificate has expired The notAfter date is before the
current time.
2.3 Certificate Management
During the installation and setup of Vital Security, a private key is created
by the system, followed by the creation of a self-signed certificate. By
default, Vital Security signs the on-the-fly certificates using the self-
generated private key, and the end-user sees the self-signed certificated.
Certificate Management includes the following:
2.3.1 Certificate Export
System administrators have the option to export the SSL certificate from
the system to install it later on end-user machines as a trusted CA.
Installing Vital Security certificates on end-user machines will prevent the
security validation error messages for the end-users.
Figure 2: Generate Certificate Signing Request
2.3.2 Generating Certificate Signing Request
For large organizations, which employ their own CA that is already trusted
by end-users, there is the option to generate a Certificate Signing Request
(CSR). After the generation of the CSR, the system administrator can
export the request (which is signed by the private key of Vital Security)
and send it to the Certificate Authority. The CA will then generate a