You replace the default self-signed certificate of the region-specific Workspace ONE Access instance in Region A with a signed certificate from the Microsoft Certificate Authority generated by using the CertGenVVD utility.

Procedure

  1. In a Web browser, log in to the region-specific Workspace ONE Access instance in Region A by using the administration interface.
    Setting Value
    URL https://sfo01wsa01.sfo01.rainpole.local/admin
    User name admin
    Password sfo01wsa01_admin_password
    Domain System Domain
  2. On the main navigation bar, click the Appliance settings tab.
  3. In the left pane, click VA configuration and click Manage configuration.
  4. In the left pane, click Install SSL certificates.
  5. Click the Server certificate tab, configure these settings, and click Save.

    Setting

    Value

    SSL certificate

    Custom Certificate

    SSL certificate chain

    Paste the content of the sfo01wsa01.2.chain.pem file generated by the CertGenVVD utility.

    PrivatekKey

    Paste the content of the sfo01wsa01.key file generated by the CertGenVVD utility.

    Subject alternative names

    sfo01wsa01.sfo01.rainpole.local

  6. In the Updating certificate dialog box, click OK.

    It takes time for the certificate installation to complete and the services to restart.

  7. After the services are restarted, close all Web browsers, open a new Web browser, log in back to the region-specific Workspace ONE Access instance, and verify that the certificate is replaced.