Create a Host Certificate (.pfx)

  • You have the root certificate (.pfx file) and its password with which you want to create a host (.pfx) certificate.
  1. Click Create Certificate and select Create Host Certificate (.pfx) .
  1. In the Host Certificate Information expander, enter the details as follows:
    a. Browse for the root certificate (.pfx file) from the disk. By default, the last created root certificate (.pfx file) is selected.
    b.
    Enter the root certificate password.
    c. Enter the certificate file name (.pfx) of the host certificate.
    d. Enter the certificate password (.pfx) for the host certificate and confirm it.
    e. Enter the certificate file name (.cer) of the host certificate.
    f. Browse for the location to store the certificate on the disk. By default, the path of the last-created root certificate is selected.
    g. Set the expiration (validity period) duration in days. By default, the certificate expires after 2190 days.
    h. Enter the subject's identifier information as follows:
    — Subject name: Change the default to the Full computer name of the host machine where this host certificate will be imported or used, for example, ABCXY022PC.domain01.company.net.
    — Department
    — Organization
    — City/district
    — State/province
    — Country code (only two characters)
    NOTE: It is recommended to create a new certificate if the machine name is changed, each machine name must have a unique certificate, you can import and set the certificates as default.
  1. Click Save .
  • A message displays if the subject name of the host certificate is the same as that of its root certificate.
  1. Click OK.
  1. Click Save to initiate the file (.pfx).
  • The data is validated and on successful certificate creation, two new host certificate files, one with an extension .pfx and the other with an extension .cer, are created at the specified location on the disk.
    The host certificate (.pfx file) is used for importing the host certificate in the Windows Certificate store when securing client/server communication.
    You can also use this host certificate (.pfx file) for configuring the CCom port settings for secure web communication. For this, the name of the host certificate must be the full computer name of the Desigo CC server.