Upload a certificate

If you sent the certificate to a Certificate Authority (CA) and have received the signed certificate file, upload the file to the N-able N-central server.

When you upload a certificate, N-central automatically restarts the appropriate services for the certificate to take effect resulting in some downtime.

  1. Click Administration Certificate Management > Upload Certificate.
  2. If you are uploading a TLS Certificate signed by a Private Certificate Authority, you must first upload the Root CA Certificate into the N-central Server Operating System Trust Store. Then select Type CA Certificate and upload the Root CA Certificate to N-central.

  3. In the Type drop-down list, select the type of certificate to upload from one of the following:
    • CA Certificate
    • SSL Certificate
    • PKCS12 Keystore/Wildcard Certificate

    CA certificate list files must be uploaded as a PEM, DER, or PKCS12 file format.

  4. Click Browse to navigate to the file.
  5. If you are uploading a PKCS12/Wildcard Certificate, type the Password required to encrypt and decrypt the file.

  6. Click Save.

After the specified certificate is uploaded, N-able N-central ensures that the certificate matches the current key and restarts the appropriate services for the certificate to take effect.

CA certificates

If the proper CA certificate file is not uploaded, the HTTPS service cannot monitor the associated SSL certificates installed on a customer's devices.

Uploading a customer's CA file allows N-able N-central to monitor customized SSL certificates that have been signed by the CA and installed on a customer's devices. The SSL certificates can be monitored for their validity and expiry dates using the HTTPS service.

A CA certificate in N-able N-central is a file containing a list of names and public keys of the certificate authorities. By default, N-able N-central already provides a CA certificate file, which lists the certificates of the industry-recognized CAs, allowing any SSL certificate signed by one of these authorities to be monitored.

When a CA file is uploaded, the N-able N-central server and Windows probes download the file and use it when monitoring the associated SSL certificates. During the upload, a previously uploaded CA file is replaced. The file provided by N-able N-central, however, is always retained on the central server. Therefore, we recommend that you maintain one CA certificate file and append it with the new CA certificate file you receive. This updated file can then be uploaded, allowing the monitoring of SSLcertificates while retaining the previous CA certificates.

If you upload a CA certificate that is not included in the CA certificate file, it must be uploaded in the chained format. To create a chained format, append the signed certificate to the CA certificate. Refer to About SSL certificates for more information on chained certificates.