Trusted CA objects

A trusted CA object is a security object that:
  • enables configuration of an external CA object by uploading an X.509 v3 CA certificate

  • supports uploading files encoded in DER or PEM formats, and

  • requires the system to validate the certificate before saving the object.

You can upload a file encoded in one of these supported formats:

  • Distinguished Encoding Rules (DER)

  • Privacy-enhanced Electronic Mail (PEM)

If the file is password-protected, you must supply the decryption password. If the certificate is encoded in the PEM format, you can also copy and paste the certificate information.

You can upload a CA certificate only if the file contains proper certificate information; the system validates the certificate before saving the object.