Managing Users, Authentication, and VPN Certificates
382
ProSecure Unified Threat Management (UTM) Appliance 
VPN Certificates Screen
To display the Certificates screen, select VPN > Certificates. Because of the large size of 
this screen, and because of the way the information is presented, the Certificates screen is 
divided and presented in this manual in three figures (Figure 234 on page 383, Figure 236 on 
page 385, and Figure 238 on page 388).
The Certificates screen lets you to view the currently loaded digital certificates, upload a new 
digital certificate, and generate a certificate signing request (CSR). The UTM typically holds 
two types of digital certificates:
•     CA certificates. Each CA issues its own digital certificate to validate communication with 
the CA and to verify the validity of digital certificates that are signed by the CA.
•     Self-signed certificates. The digital certificates that are issued to you by a CA to identify 
your device.
The Certificates screen contains four tables that are explained in detail in the following 
sections:
•     Trusted Certificates (CA Certificate) table. Contains the trusted certificates that were 
issued by CAs and that you uploaded (see Manage CA Certificates on this page).
•     Active Self Certificates table. Contains the self-signed certificates that were issued by 
CAs and that you uploaded (see Manage Self-Signed Certificates on page 384).
•     Self Certificate Requests table. Contains the self-signed certificate requests that you 
generated. These requests might or might not have been submitted to CAs, and CAs 
might or might not have issued certificates for these requests. Only the self-signed 
certificates in the Active Self Certificates table are active on the UTM (see Manage 
Self-Signed Certificates on page 384).
•     Certificate Revocation Lists (CRL) table. Contains the lists with certificates that have 
been revoked and are no longer valid, that were issued by CAs, and that you uploaded. 
Note, however, that the table displays only the active CAs and their critical release dates. 
(see Manage the Certificate Revocation List on page 388).
Manage CA Certificates
 To view and upload trusted certificates:
Select VPN > Certificates. The Certificates screen displays. (The following figure shows the 
top section of the screen with the trusted certificate information and some example 
certificates in the Trusted Certificates (CA Certificate) table.)