Troubleshooting SSL issues
This topic describes some common issues when configuring HTTPS/SSL in TrendMiner.
When HTTPS is successfully enabled via ConfigHub the option 'Enable HTTPS' is changed to 'Disable HTTPS' and you will be forced to access TrendMiner via 'https://' instead of 'http://'. If however you cannot enable https in ConfigHub, something is wrong with the certificates you uploaded and TrendMiner could not successfully import them. To figure out what exactly is wrong with the certificates, please check the requirements on this page.
Certificates come in different formats and you might have received multiple (sometimes redundant) files. TrendMiner needs only 3 separate files as input:
1. Private key
You might have received a .key file. To check if this .key file is in the correct format open your .key file in a text editor. It should look like this:
-----BEGIN PRIVATE KEY----- MIIEvgIBADANBJARoR4zqfdDLOYU02bvpijlelogUEgkqhkiG9w0BAQEFAASCBKg aM3Cy8/ZR2lqtpxiqFGoeC0Sa5mCQ8bz7rcnj8ZCDTNRjIZeEJJyfjOfmacY9WDp Mgti2KClweZuMRrr7lyAO01gFi1CWJ6kHTZQg/c9xE2MRSwNJjeZI+z0q8gydSS9 weH5LvDu/2szYXdcV+8x6c+aMvnv1rpoNz/4RlcFPgNU5zNtR1oAt9cEmqCloolg T69dDClyVhCtf1x+1UoXhfnvEjaCShlr26gwFLEpiRX81rWINfGqhl3kX9jhvGIO 1/6XV5rwoP+0IwAP1qt7x6Koo3ZvmUJQ+2k7yoSO7xxaIGkdqf3eTjkOs3aS8nQP msfPPZwpAgMBAAECggEAA9H2PaepoifLjHOwke/GNKGKRp0a9YEDWvlDvid0Lgte DHRtWvE97iUKCnpxamU8iM2WyWzHg7YN9RSS40esVrFIMxvrRAbn9COhEOOWIt+J RlpR5TAuVlC9D7eXBORd8Rsqi+BMsnIkNXT5B0FBmjdxHpTpJjxwbuWQcWIjZYm2 DpDSVSYfMlpJKE6Q6tb9Wv9BOyQbYDsURFTGwEo45dVCfYfwaHscjLR0YlaHpctk N9eIcq2TimR/KF+FseWy2zxqdNohlpvpTCBF695ciNmTQWaA87u0vF3K31mGig6/ RXvaLKCCizBTwslrAjvBkHPY3LSKtb1AvHMxFdWTkQKBgQD9MHtjjGvrD44cbWl/ 6MBX/s9UWP+SAsCMeUyg3qHH0iMr1bWK0GTIWj+gYCI1WYsnG6YoX1uZAoGBAM2F mR+VnmhqZ7doASBK74AfxDeL7sHzsqP4ETIggXhdHyqiaoyj3eM0Qhf6o86OOFg0 l6YN1uXloluTQUjAb1/WXQe50QKBgQDqDlSTZY/WvyQ4FEP19v6+VVgIaRJY4b1q RZDsVXb42N+jqnlJdX2I+a9jPTd5EGIVzGML0PQWzdGhbxAsaaJJj5GK/++sAVLY HzzgH2JHRZ7CFSPbqn+L1qFjn5F9rIPjAhIu2IkgE6crh5bhz4ROV/cjh09vqhQu wpQceEv62QKBgGhaChDueDAqehTnV1sbj+L0p3kJMVR5g+ihud53w8/6oPpZG3i6 CT+2SpEL7i102XBl6emf+eIcq2TimR/KF+FseWy2zxqdNohlpvOz+kdjWIfvHvof xVcCZZxj0wubxJlpQ1JvhziLOP/O4zPR6OO9VYV+lCWt+5EsliBguWVxAoGBAKgH W65ppibMGCtuWQ/WnzFzQXzgOby3au1FPfJ8tKmXwI3Vz7bt8w6H+eKrywxNt6zg i2arPuC0J7/WZO0NdOWMfTcl4CFC3f+sBV79COgT0hKRbKnBsElq73f+0UtAs3og PX+wggSkAgEAAoIBAQDnfH0VbZI6JuL+GEoOFuGimsaow+VHpEtJdzKhkmJKtO/l 9ZWTz5N5Sr2tN1fH28VkwJ8or1I04Rpd8h+5XJYnHbtpIBeUDIEJKZ9lwLQCmgCy 2iwEq9XTJ3SWmdN8zLDJrrd6SyrlWR1RASxylP/h1YKq+6KIzmAr72ScFWm6K+TM SiYRVTS0OEihSRLIe9lO6UvX -----END PRIVATE KEY-----
If you did not receive a .key file, your private key might be included in a .p12 or .pfx file and can be extracted from there. Note that .p12/.pfx formatted certificates are password protected so you should have received a password too.
To extract the private key from the .p12/.pfx file:
Convert the certificate to a pem format: How to convert your certificate to the PEM format?
Extract the private key from the pem file: Where to get your private key?
Done, this 'private.key' file can be used to upload in ConfigHub under 'SSL' -> 'Private key'
If you did not receive a .key file nor a .p12/.pfx, your private key might be included in a .pem file you received and it can be extracted from there. To extract the private key from the .pem file, open the .pem file with a text editor and cut out the text from "-----BEGIN PRIVATE KEY-----" up till and including "-----END PRIVATE KEY-----" and paste it in a new text file. Save this file as 'private.key'.
2. Certificate
TrendMiner accepts only certificates in the PEM format. In case you received a file with the .pem or .crt extension it is likely this certificate can be used without further action. To verify, open the .pem/.crt file with a text editor. It should look like this:
-----BEGIN CERTIFICATE----- MIIFmTCCA4GgAwIBAgIIM33Sf8cWBscwDQYJKoZIhvcNAQELBQAwXTEUMBIGA1UE CgwLQmFgSx/k9f9C5ZXIgR3JvdXAxIDAeBgNVBAsMF0JheWVyIEJ1c2luZXNzIFN MSMwIQYDVQQDDBpCYXllciBHcm91cCBEZXZpY2UgQ0EgMjAxNjAeFw0yMTA5Mjgw OTA4MTp7Fedt+QzDLfylaFw0yMzEyMzEwOTA4MTlaMDYxDjAMBgNVBAoMBUJBWUV DAQ1MDM1MRUwEwYDVQQDDAxSUzUwMzVwaW1zMTgwggEiMA0GCSqGSIb3DQEBAQUA A4IBDwAwggEKAoIBAQDnfH0VbZI6JgYIKwYBBQUHMAuL+aM3Cy8/ZR2lqtpxiqFG 7rcnj8ZCDTNRjIZeEJJyfjOfmacY9WDpMgti2KClweZuMRrr7lyAO01gFi1CWJ6k HTZQg/c9xE2MRSwNJjeZI+z0q8gydSS9weH5LvDu/2szYXdcV+8x6c+aMvnv1rpo Nz/4RlcFPgNU5zNtR1oAt9cEmqCloolgT69dDClyVhCtf1x+1UoXhfnvEjaCShlr 26gwFLEpiRX81rWINfGqhl3kX9jhvGIO1/6XV5rwoP+0IwAP1qt7x6Koo3ZvmUJQ x2k7yoSO7xxaIGkdqf3eTjkOs3aS8nQPmsfPPZwpAgMBAAGjggGCMIIBfjBaBggr BgEFBQcBAQROMEwwSgYIKwYBBQUHMAKGPmh0dHA6Ly9wa2ktc2VydmljZXMuYmF5 ZXIuYml6lcnZpY2VzL2dyb3VwcGtpL2JheWVyX2RldmljZWNhXzIwMTYuY2VyMB0 BBSYeg2CCs+AfAFxASGjkjZUFcxX8TAJBgNVHRMEAjAAMB8GA1UdIwQYMBaAFKgM MFTn2LqlH+4XpbAFnsdp5jW1ME8GA1UdHwRIMEYwRKBCoECGPmh0dHA6Ly9wa2kt c2VydmljZXMuYmF5ZXIuYml6L2dyb3VwcGtpL2JheWVyX2RldmljZWNhXzIwMTYu Y3JsMA4GA1UdDwEB/wQEAwIFoDApBgNVHSUEIjAgBggrBgEFBQcDAQYIKwYBBQUH AwIGCisGAQQBgjcUAgIwSQYDVR0RBEIwQIIfUlM1MDM1cGltczE4LnJzLmRzLm1v bnNhbnRvLmNvbYIddHJlbmRtaW5lci5ycy5kcy5tb25zYW50by5jb20wDQYJKoZI hvcNAQELBQADggIBAEe31DaylLv4CqF1aHGk/22G+ZS3pyEQAOeO8puBwPh0alAB l2VtLAXg5YTW0ej03mPS6v7UQ74F9tPwD0dnTvJBoF3BcIQK4UJyhZaj/T6GM+kR 90BIAcZa+Pts9q71kwa5dGVInPnJPfaQZxjM1AlrlVv2BGxAK2W32j3cRwoNt0UG fkqGA1UdDgQWd1aQYRrClHcRIctapKhkkxuxpeJKoy0JaFGnrNK4QPTeIMgSSLGC w0W/ZECjS3oeC0Sa5mCQ8bzjERWWxMP1zy1GK3X8jqNoiRJMVsbkB+zMjbikVQb/ LnPmv8j2DUl6O4XUE91Ww3kvPX572YJ3qCFq8OB6+o20RRvUF+L/iSbMEcf1Pt0+ ywyk9Hh9+8mG0nRpCYcHuZI/EJe7c68KTTmXMtwmpOnIqJBQEQ9Zd1SmuFHgsDkk NvtYc4nLv6Fan4cmxEVU7XpQ755bkSbH19sa3POaIjtRYM+9h4mcoJ5d4YqEaZMy Rx2rt2u/uT8ASMQ0wCwYDVQQLHlzYL3yVsBkGUPhp5bviwUC2yIhme37JaZVkfRQ Toz4CB40v9ZNgp4oLzKXn9DC53NobGR7goa3RuiqRrabrQg7UGA4kO77p32SEjoG fRT7mvjv4J1Mgd/lITwvUtugIo1rZJ80y8wEjoNBG64mpIfEnfgUQGf4CeULusCk -----END CERTIFICATE-----
In case your .pem/.crt file contains multiple certificates (multiple '-----BEGIN CERTIFICATE-----' sections) these other certificates represent your certificate chain. In this case your .pem/.crt file can be uploaded both under 'certificate' and 'certificate chain' in ConfigHub.
In case your .pem/.crt file also contains a section '-----BEGIN PRIVATE KEY-----' you have to cut this section from the file and save it in a separate file (using a standard text editor) as a .key file.
It could also be you received a file with a .cer or .der or some other extension. The extension of the file is less relevant but what it relevant is the format of the file. When you open the file with a text editor it should contain the "-----BEGIN CERTIFICATE-----" section, similar to the example above. If you open the file with a text editor and it looks similar to the data below, the certificate is in binary format and needs to be converted.
3082 07fd 3082 05e5 a003 0201 0202 1068 1604 dff3 34f1 71d8 0a73 5599 c141 7230 0d06 092a 8648 86f7 0d01 010b 0500 3072 310b 3009 0603 5504 0613 0255 5331 0e30 0c06 0355 0408 0c05 5465 7861 7331 1030 0e06 0355 0407 0c07 486f 7573 746f 6e31 1130 0f06 0355 040a 0c08 5353 4c20 436f 7270 312e 302c 0603 5504 030c 2553 534c 2e63 6f6d 2045 5620 5353 4c20 496e 7465 726d 6564 6961 7465 2043 4120 5253 4120 5233 301e 170d 3230 3034 3031 3030 3538 3333 5a17 0d32 3130 3731 3630 3035 3833 335a 3081 bd31 0b30 0906 0355 0406 1302 5553 310e 300c 0603 5504 080c 0554 6578 6173 3110 300e 0603 5504 070c 0748 6f75 7374 6f6e 3111 300f 0603 5504 0a0c 0853 534c 2043 6f72 7031 1630 1406 0355 0405 130d 4e56 3230 3038 3136 3134 3234 3331 1430 1206 0355 0403 0c0b 7777 772e 7373 6c2e 636f 6d31 1d30 1b06 0355 040f 0c14 5072 6976 6174 6520 4f72 6761 6e69 7a61 7469 6f6e 3117 3015 060b 2b06 0104 0182 373c 0201 020c 064e 6576 6164 6131 1330 1106 0b2b 0601 0401 8237 3c02 0103 1302 5553 3082 0122 300d 0609 2a86 4886 f70d 0101 0105 0003 8201 0f00 3082 010a 0282 0101 00c7 85e4 646d bd45 09ce f144 ab2d
To convert a binary formatted certificate to a base64 formatted certificate there are a few options:
Using an online convertor. For more info on how to convert a binary certificate file to base64 certificate via an online tool you can search on the internet for "convert der/binary to standard pem online" for example. Note that this option is most likely the easiest and fastest but it requires to upload your private key which is not advised from a security perspective.
Using powershell. For more info on how to convert a binary certificate file to base64 certificate via powershell you can search on the internet for "convert binary certificate to base64 using powershell" for example.
After converting the certificate you should be able to open it with a text editor, verify it now contains "-----BEGIN CERTIFICATE-----" and use this certificate to upload in ConfigHub -> SSL -> Certificate.
If you only received a .pfx or .p12 file, your certificate can be extracted from there. Note that .p12/.pfx formatted certificates are password protected so you should have received a password too. To extract the certificate from the .p12/.pfx file:
Convert the certificate to a pem format: How to convert your certificate to the PEM format?
Open the .pem file with a text editor.
Copy all occurrences of "-----BEGIN CERTIFICATE-----" up till and including "-----END CERTIFICATE-----" and paste them sequentially in a new text file. Save this file as 'certificate_chain.pem'.
Do NOT copy over other text from this .pem file (e.g. the private key section, "Bag Attributes" or "Key Attributes"). The snippet below shows an example of a converted pfx/p12 file and the resulting .pem file.
Dummy example of converted .pem file (wrong)
Dummy example of the resulting 'certificate_chain.pem' file (correct)
Bag Attributes localKeyID: 4F 0D 82 0A CF 80 7C 01 71 98 01 21 A3 92 36 54 15 AA 57 CF friendlyName: PFS_GGSSS_231 Key Attributes: <No Attributes> -----BEGIN PRIVATE KEY----- RFTGwEo45dVCfYfwaHscjL0BAQEFAASCBKgwggSkAgEAAoIBAQDnfH0VbZI6JuL+ aPfJ8tKmXwI3Vz7bt8w6H+eKrywxNt6zgM3Cy8/ZR2lqtpxiqFGoeC0Sa5mCQ8bz Mgti2KClweZuMRrr7lyAO01gFi1CWJ6kHTZQg/c9xE2MRSwNJjeZI+z0q8gydSS9 weH5LvDu/2szYXdcV+8x6c+aMvnv1rpoNz/4RlcFPgNU5zNtR1oAt9cEmqCloolg T69dDClyVhCtf1x+1UoXhfnvEjaCShlr26gwFLEpiRX81rWINfGqhl3kX9jhvGIO 1/6XV5rwoP+0IwAP1qt7x6Koo3ZvmUJQ+2k7yoSO7xxaIGkdqf3eTjkOs3aS8nQP msfPPZwpAgMBAAECggEAA9H2PaepoifLjHOwke/GNKGKRp0a9YEDWvlDvid0Lgte DHRtWvE97iUKCnpxamU8iM2WyWzHg7YN9RSS40esVrFIMxvrRAbn9COhEOOWIt+J RlpR5TAuVlC9D7eXBORd8Rsqi+BMsnIkNXT5B0FBmjdxHpTpJjxwbuWQcWIjZYm2 DpDSVSYfMlpJsURFTGwEo45dVCfYfwaHscjLR0YlaHpctkmbUTxHmRu5TCs0T27z N9eIcq2TimR/KF+FseWy2zxqdNoEihSRLIe9lO6UvOhlpvpTCBF695ciNmTQWaA87 RXvaLKCCizBTwslrAjvBkHPY3LSKtb1AvHMxFdWTkQKBgQD9MHtjjGvrD44cbWl/ 6MBX/s9UWP+SAsCMeUyg3qHH0iMr1bWK0GTIWj+gYCI1WYsnG6YvieUmS1YKq+6K mR+VnmhqZ7doASBK74AfxDeL7sHzsqP4ETIggXhdHyqiaoyj3eM0Qhf6o86OOFg0 l6YN1uXloluTQUjAb1/WXQe50QKBgQDqDlSTZY/WvyQ4FEP19v6+VVgIaRJY4b1q RZDsVXb42N+jqnlJdX2I+a9jPTd5EGIVzGML0PQWzdGhbxAsaaJJj5GK/++sAVLY HzzgH2JHRZ7CFSPbqn+L1qFjn5F9rIPjAhIu2IkgE6crh5bhz4ROV/cjh09vqhQu wpQceEv62QKBgGhaChDueDAqehTnV1sbj+L0p3kJMVR5g+ihud53w8/6oPpZG3i6 CT+2SpEL7i102XBl6emf+Oz+kdjWIfvHvofJARoR4zqfdDLOYU02bvpijlelogUE xVcCZZxj0wubxJlpQ1JvhziLOP/O4zPR6OO9VYV+lCWt+5EsliBguWVxAoGBAKgH W65pp/s9UWP+SAsCMeUyg3qHH0iMr1bWK0GTIWbMGCtuWQ/WnzFzQXzgOby3au1F i2arPuC0J7/WZO0NdOWMfTcl4CFC3f+sBV79COgT0hKRbKnBsElq73f+0UtAs3og PX+GEoOFuGimsaow+VHpEtJdzKhkmJKtO/loX1uZAoGBAM2FSyrlWR1RASxylP/h 9ZWTz5N5Sr2tN1fH28VkwJ8or1I04Rpd8h+5XJYnHbtpIBeUDIEJKZ9lwLQCmgCy 2iwEq9XTJ3SWmdN8zLDJrrd6LfCe4IzmAr72ScFWm6K97iUKCnpxamU8iM2WyWzH SiYRVTS0Ou0vF3K31mGig6/ -----END PRIVATE KEY----- Bag Attributes localKeyID: 11 7A 0D 82 0A CF 80 CF 3B 7C 7C 01 71 01 21 A3 92 98 36 54 friendlyName: PFS_GGSSS_231 subject=O = COMPANY, OU = 1033, CN = PFS_GGSSS issuer=O = COMPANY Group, OU = Company Services, CN = Company Services CA 2018 -----BEGIN CERTIFICATE----- RFTGwg7YN9R+TMKE6Q6tb9Wv9BOyQbYDDjAMBgNVBAoMBUJBWUVSMQ0wCwYDVQQL CgwLQmF5ZXIgR3JvdXAxIDAeBgNVBAsMF0JheWVyIEJ1c2luZXNzIFNlcnZpY2Vz MSMwIQYDVQQDDBpCYXllciBHcm91cCBEZXZpY2UgQ0EgMjAxNjAeFw0yMTA5Mjgw OTA4uiqRrabrQg7UGA4kO77p32SEjoGMTlaFw0yMzEyMzEw7rcnj8ZCDTNRjIZeE DAQ1MDM1MRUwEwYDVQQDDAxSUzUwMzVwaW1zMTgwggEiMA0GCSqGSIb3DQEBAQUA A4IBDwAwggEKAoIBAQDnfH0VbZI6JuL+aM3Cy8/ZR2lqtpxiqFGoeC0Sa5mCQ8bz 7rcnj8ZCDTNRjIZeEJJyfjOfmacY9WDpMgti2KClweZuMRrr7lyAO01gFi1CWJ6k HTZQg/c9xE2MRSwNJjeZI+z0q8gydSS9weH5LvDu/2szYXdcV+8x6c+aMvnv1rpo Nz/4RlcFPgNU5zNtR1oAt9cEmqCloolgT69dDClyVhCtf1x+1UoXhfnvEjaCShlr 26gwFLEpiRX81rWINfGqhl3kX9jhTCCA4GgAwIBAgIIM33Sf8cWBscwvGIO1/6XV x2k7yoSO7xxaIGkdqf3eTjkOs3aS8nQPmsfPPZwpAgMBAAGjggGCMIIBfjBaBggr BgEFBQ8wEjoNBG64mpIfEnfgUQGf4CeULusCkgSx/k9f9CcBAQROMEwwSgYIKwYB ZXIuYml6L2dyb3VwcGtpL2JheWVyX2RldmljZWNhXzIwMTYuY2VyMB0GA1UdDgQW BBSYeg2CCs+AfAFxASGjkjZUFcxX8TAJBgNVHRMEAjAAMB8GA1UdIwQYMBaAFKgM MFTn2LqlH+4XpbAFnsdp5jW1ME8GA1UdHwRIMEYwRKBCoECGPmh0dHA6Ly9wa2kt c2VydmljZXMuYmF5ZXIuYm5rwoP+0IwAP1qt7x6Koo3ZvmUJQl6L2dyb3VwcGtpL Y3JsMA4GA1UdDwEB/wQEAwIFoDApBgNVHSUEIjAgBggrBgEFBQcDAQYIKwYBBQUH AwJJyfjOfmacY9WDpOTA4MTlaMDYxIGCisGAQQBgjcUAgIwSQYDVR0BQUHMAKGPm bnNhbnRvDQYJKoZIhvcNAQELBQAwXTEUMBIGA1UELmNvbYIddHJlbmRtaW5lci5y hvcNAQELBQADggIBAEe31DaylLv4CqF1aHGk/22G+ZS3pyEQAOeO8puBwPh0alAB l2VtLAXg5YTW0ej03mPS6v7UQ74F9tPwD0dnTvJBoF3BcIQK4UJyhZaj/T6GM+kR 90BIAcZa+Pts9q71kwa5dGVInPnJPfaQZxjM1AlrlVv2BGxAK2W32j3cRwoNt0UG fkqd1aQYRrClHcRIctapKhkkxuxpeJKoy0JaFGnrNK4QPTeIMgSSLGCRflF1SnAl w0W/ZECjS3jERWWxMP1zy1GK3X8jqNoiRJMVsbkB+zMjbikVQb/p7Fedt+QzDLfy LnPmv82JheWVyX2RldmljZWNhXzIwMTYuj2DUl6O4XUE91Ww3kvPX572YJ3qCFq8 ywyk9Hh9+8mGcy5kcy5tb25zYW50by5jb20wDQYJKoZI0nRpCYcHuZI/EJe7c68K NvtYc4nLv6Fan4cmxEVU7XpQ755bkSbH19sa3POaIjtRYM+9h4mcoJ5d4YqEaZMy Rx2rt2u/uT8AHlzYL3yVsBkGUPhp5bviwUC2yIhme37JaZVkfRQ4J1Mgd/lITwvU Toz4Ch0dHA6Ly9wa2ktc2VydmljZXMuYB40v9ZNgp4oLzKXnTTmXMtwmpOnIqJBQ fRT7mvjvtugIo1rZJ80ygoaOB6+o20RRvUF+L/iSbMEcf1Pt0+3R -----END CERTIFICATE----- Bag Attributes: <Empty Attributes> subject=O = COMPANY Group, OU = Company Services, CN = Company Root CA issuer=O = COMPANY Group, OU = Company Services, CN = Company Root CA -----BEGIN CERTIFICATE----- RFTGwEQ9Zd1SmuFHgsDkk9DC53NobGR7MIIDbDCCAlSgAwIBAgIBZzANBgkqhkiG ciBHcm91cDEgMB4GA1UECxMXQmF5ZXIgQnVzaW5lc3MgU2VydmljZXMxHDAaBgNV BAMTE0JheWVyIEdyb3VwIFJvb3QgQ0EwHhcNMTAwODE4MTAxNjI1WhcNNDIwODE4 MTAxNjI1WjBWMRQwEgYDVQQKEwtCYXllciBHcm91cDEgMB4GA1UECxMXQmF5ZXIg QnVzaW5lc3MgU2VydmljZXMxHDAaBgNVBAMTE0JheWVyIEdyb3VwIFJvb3QgQ0Ew ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHFl74aExay2hpuh3NXbG9 RnyprSx/XVgIWGe65V/LrRBeu80dll95Qr559zv9NDwzhIjYzoe5z7PMIHNTEPyo AHKFzDLv7d77TE63XAQGGwAEjI9xJa15aHD653GOfGEqAVLgPVtpF1UhdtVNpUVL FErOuvmosE9OAvtM5dfmH0yPPLKiWH+Gr4o9iVhw4lDdq7gW6HNeMAYwZehPSx50 oyu9cfoALmNyOg8xWgSbL9XNYXgcyYUjFjoXtVxGiYKqDtnQ11yHAStE3fxPcN9Z LDX2Du0H4AY3e9NoehxNOs4YVLGj10ZBW041RxhG3sOQRoXomud9XgdAQmiv3eux AgMBAAGjRTBDMBIGA1UdEwEB/wQIMAYBAf8CAQIwDgYDVR0PAQH/BAQDAgHGMB0G A1UdDgQWBBR5m+9NQJ4+N2odspINSy5teXnb+jANBgkqhkiG9w0BAQUFAAOCAQEA nfoR1n3t3dSXbL9dT5Cjonn1cLrGFY/QPoF4xhhC/MKJRB6Uug3OOT1QYC+jDqFm UfmmDWQHYQUFADBWMRQwEgYDVQQKEwtCYXllSD1cyasLjIUbQIExIhadKDsceXfb nGjabxDSMUOm3SrPomyE6q398zDhQ0N/h091+J5gREx2u8zJzdaFQTrOPLGlLjy3 scz9PJE8uvD/ie4j7SAETVyiyNbIoTED12xV6FfXxzbK0KU3Q0Ilxrpjd3ELUDvN K9XxQ+a8d767x50JjvlwSlYwmo+M6+6m6cZnbVE7wfDnL1bhn+LWx4zRLzwAy78+ RKcyj78/OSXAzZ9Hc0Kjsc== -----END CERTIFICATE----- Bag Attributes: <Empty Attributes> subject=O = COMPANY Group, OU = Company Services, CN = Company Services CA 2018 issuer=O = COMPANY Group, OU = Company Services, CN = Company Root CA -----BEGIN CERTIFICATE----- RFTGwEQ9Zd1SmuFHgsDkk9DC53NMIIFMTCCBBmgAwIBAgIIOuPM/qnw0PEwDQYJK ChMLQmF5ZXIgR3JvdXAxIDAeBgNVBAsTF0JheWVyIEJ1c2luZXNzIFNlcnZpfA1h MRwwGgYDVQQDExNCYXllciBHcm91cCBSb290IENBMB4XDTE2MDEyNjExNDc1NFoX DTQwMDkwMTEwMDAwMFowXTEUMBIGA1UECgwLQmF5ZXIgR3JvdXAxIDAeBgNVBAsM F0JheWVyIEJ1c2luZXNzIFNlcnZpY2VzMSMwIQYDVQQDDBpCYXllciBHcm91cCBE ZXZpY2UgQ0EgMjAxNjCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAPB+ 0KpgeXP4AvVOEmv7moaVybMMzslIdEMs6jAJNFcgsEi6xBx6t76i5rpV8bG0ah32 557BPjq+Pb26uhvl0vHFrq4FsAGr0lw97WrIWX8NJMVK8RAOAu8lZJgCZAYEB8sk X3kGvX/uousTWbYYZ2cfnQJQw075UGVsVsMSDYMVoJehN7wvM1HiGGBtq7o2ApS9 xQJy8y5BvDLaM5ZkC7qYDgZkW0BWnKpUoqGS9exN1NOLYmuwqlEy5cBSatRqvhNP HQU9/dLGqBbUsa7SijpbDV61jDFUNmuP4v294XmdnYAvOPz58Oj0sk1991P+62mG ncdT1gDUiZQ1x1NG2lNAemsujAtNMecNAQELBQAwVjEUMBIGA1UE2y8Uj0cgLgAf YNZNL8ltq9cTJT27Jq/yrkgULoC+Q47nqn3Lxs4xR8pGvovybtiYspXpemY6LTFw bjPB/vayAfP1iVjRmgKCgOC3LKK6Kl/o1JtMIxr+tNlj6RrRgfLAEwf9VUFyMFiA 0dx6mR9HysFjbjSGiMdhF5M43JrRkISiMNsB2lOyRvCuAxr3vC+3qHTI/VbkUHnd jDvuwv1XE/ZJixzaJHzJyQbB18pujIPUKwlYGSz8w8Q1N0gohUd4pS3D9tNCxCyq 03PC0dnkbTLbHPRd9VCNY2VzwejoZBbavNORAo+KYK/Us83qlVPFAn1PWR/NIY3Y BQUHAQEEPzA9MDsGCCsGAQUFBzAChi9odHRwOi8vcGtpLmJheWVyLmluZm8vZ3Jv dXBwa2kvYmF5ZXJfcm9vdGNhLmNlcjAdBgNVHQ4EFgQUqAwwVOfYuqUf7helsAWe x2nmNbUwEgYDVR0TAQH/BAgwBgEB/wIBADAfBgNVHSMEGDAWgBR5m+9NQJ4+N2od spINSy5teXnb+jBIBgNVHR8EQTA/MD2gO6A5hjdodHRwOi8vcGtpLXNlcnZpY2Vz LmJheWVyLmJpei9ncm91cHBraS9iYXllcl9yb290Y2EuY3JsMAsGA1UdDwQEAwIB xjANBgkqhkiG9w0BAQsFAAOCAQEAiFG7N5rsJoCs/jY+TJb6BzgjQlizewqmk7u2 om/ty20PFXw1mKs9FJ7cU10FBrY15p0HeHj7wpEuYq8mJ2dOEwC7OYJXIUYQ2Iym ffIpSBte+O1nKZ+s3MulIIwZvX+OxeoA8lKtX6XKZkbS9f8IC400bniMrJjYlCC9 qGr+SigtqPk3dI1RMBAAGjgfswgfgwSwYIKwYBsw87UlFAh9z/LKedS6wka5etw3 PI4jM6xsfTfsgYHvbaV4Zy1zt9yqgLrA5zmIFtrCochUN5N2QTA2t/bXU6YFCkQp HkQX6ErKhtlR92Tuv58GXBAMqLCmE14SZfDITAg3C9gr1jrOSU== -----END CERTIFICATE-----
-----BEGIN CERTIFICATE----- RFTGwg7YN9R+TMKE6Q6tb9Wv9BOyQbYDDjAMBgNVBAoMBUJBWUVSMQ0wCwYDVQQL CgwLQmF5ZXIgR3JvdXAxIDAeBgNVBAsMF0JheWVyIEJ1c2luZXNzIFNlcnZpY2Vz MSMwIQYDVQQDDBpCYXllciBHcm91cCBEZXZpY2UgQ0EgMjAxNjAeFw0yMTA5Mjgw OTA4uiqRrabrQg7UGA4kO77p32SEjoGMTlaFw0yMzEyMzEw7rcnj8ZCDTNRjIZeE DAQ1MDM1MRUwEwYDVQQDDAxSUzUwMzVwaW1zMTgwggEiMA0GCSqGSIb3DQEBAQUA A4IBDwAwggEKAoIBAQDnfH0VbZI6JuL+aM3Cy8/ZR2lqtpxiqFGoeC0Sa5mCQ8bz 7rcnj8ZCDTNRjIZeEJJyfjOfmacY9WDpMgti2KClweZuMRrr7lyAO01gFi1CWJ6k HTZQg/c9xE2MRSwNJjeZI+z0q8gydSS9weH5LvDu/2szYXdcV+8x6c+aMvnv1rpo Nz/4RlcFPgNU5zNtR1oAt9cEmqCloolgT69dDClyVhCtf1x+1UoXhfnvEjaCShlr 26gwFLEpiRX81rWINfGqhl3kX9jhTCCA4GgAwIBAgIIM33Sf8cWBscwvGIO1/6XV x2k7yoSO7xxaIGkdqf3eTjkOs3aS8nQPmsfPPZwpAgMBAAGjggGCMIIBfjBaBggr BgEFBQ8wEjoNBG64mpIfEnfgUQGf4CeULusCkgSx/k9f9CcBAQROMEwwSgYIKwYB ZXIuYml6L2dyb3VwcGtpL2JheWVyX2RldmljZWNhXzIwMTYuY2VyMB0GA1UdDgQW BBSYeg2CCs+AfAFxASGjkjZUFcxX8TAJBgNVHRMEAjAAMB8GA1UdIwQYMBaAFKgM MFTn2LqlH+4XpbAFnsdp5jW1ME8GA1UdHwRIMEYwRKBCoECGPmh0dHA6Ly9wa2kt c2VydmljZXMuYmF5ZXIuYm5rwoP+0IwAP1qt7x6Koo3ZvmUJQl6L2dyb3VwcGtpL Y3JsMA4GA1UdDwEB/wQEAwIFoDApBgNVHSUEIjAgBggrBgEFBQcDAQYIKwYBBQUH AwJJyfjOfmacY9WDpOTA4MTlaMDYxIGCisGAQQBgjcUAgIwSQYDVR0BQUHMAKGPm bnNhbnRvDQYJKoZIhvcNAQELBQAwXTEUMBIGA1UELmNvbYIddHJlbmRtaW5lci5y hvcNAQELBQADggIBAEe31DaylLv4CqF1aHGk/22G+ZS3pyEQAOeO8puBwPh0alAB l2VtLAXg5YTW0ej03mPS6v7UQ74F9tPwD0dnTvJBoF3BcIQK4UJyhZaj/T6GM+kR 90BIAcZa+Pts9q71kwa5dGVInPnJPfaQZxjM1AlrlVv2BGxAK2W32j3cRwoNt0UG fkqd1aQYRrClHcRIctapKhkkxuxpeJKoy0JaFGnrNK4QPTeIMgSSLGCRflF1SnAl w0W/ZECjS3jERWWxMP1zy1GK3X8jqNoiRJMVsbkB+zMjbikVQb/p7Fedt+QzDLfy LnPmv82JheWVyX2RldmljZWNhXzIwMTYuj2DUl6O4XUE91Ww3kvPX572YJ3qCFq8 ywyk9Hh9+8mGcy5kcy5tb25zYW50by5jb20wDQYJKoZI0nRpCYcHuZI/EJe7c68K NvtYc4nLv6Fan4cmxEVU7XpQ755bkSbH19sa3POaIjtRYM+9h4mcoJ5d4YqEaZMy Rx2rt2u/uT8AHlzYL3yVsBkGUPhp5bviwUC2yIhme37JaZVkfRQ4J1Mgd/lITwvU Toz4Ch0dHA6Ly9wa2ktc2VydmljZXMuYB40v9ZNgp4oLzKXnTTmXMtwmpOnIqJBQ fRT7mvjvtugIo1rZJ80ygoaOB6+o20RRvUF+L/iSbMEcf1Pt0+3R -----END CERTIFICATE----- -----BEGIN CERTIFICATE----- RFTGwEQ9Zd1SmuFHgsDkk9DC53NobGR7MIIDbDCCAlSgAwIBAgIBZzANBgkqhkiG ciBHcm91cDEgMB4GA1UECxMXQmF5ZXIgQnVzaW5lc3MgU2VydmljZXMxHDAaBgNV BAMTE0JheWVyIEdyb3VwIFJvb3QgQ0EwHhcNMTAwODE4MTAxNjI1WhcNNDIwODE4 MTAxNjI1WjBWMRQwEgYDVQQKEwtCYXllciBHcm91cDEgMB4GA1UECxMXQmF5ZXIg QnVzaW5lc3MgU2VydmljZXMxHDAaBgNVBAMTE0JheWVyIEdyb3VwIFJvb3QgQ0Ew ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHFl74aExay2hpuh3NXbG9 RnyprSx/XVgIWGe65V/LrRBeu80dll95Qr559zv9NDwzhIjYzoe5z7PMIHNTEPyo AHKFzDLv7d77TE63XAQGGwAEjI9xJa15aHD653GOfGEqAVLgPVtpF1UhdtVNpUVL FErOuvmosE9OAvtM5dfmH0yPPLKiWH+Gr4o9iVhw4lDdq7gW6HNeMAYwZehPSx50 oyu9cfoALmNyOg8xWgSbL9XNYXgcyYUjFjoXtVxGiYKqDtnQ11yHAStE3fxPcN9Z LDX2Du0H4AY3e9NoehxNOs4YVLGj10ZBW041RxhG3sOQRoXomud9XgdAQmiv3eux AgMBAAGjRTBDMBIGA1UdEwEB/wQIMAYBAf8CAQIwDgYDVR0PAQH/BAQDAgHGMB0G A1UdDgQWBBR5m+9NQJ4+N2odspINSy5teXnb+jANBgkqhkiG9w0BAQUFAAOCAQEA nfoR1n3t3dSXbL9dT5Cjonn1cLrGFY/QPoF4xhhC/MKJRB6Uug3OOT1QYC+jDqFm UfmmDWQHYQUFADBWMRQwEgYDVQQKEwtCYXllSD1cyasLjIUbQIExIhadKDsceXfb nGjabxDSMUOm3SrPomyE6q398zDhQ0N/h091+J5gREx2u8zJzdaFQTrOPLGlLjy3 scz9PJE8uvD/ie4j7SAETVyiyNbIoTED12xV6FfXxzbK0KU3Q0Ilxrpjd3ELUDvN K9XxQ+a8d767x50JjvlwSlYwmo+M6+6m6cZnbVE7wfDnL1bhn+LWx4zRLzwAy78+ RKcyj78/OSXAzZ9Hc0Kjsc== -----END CERTIFICATE----- -----BEGIN CERTIFICATE----- RFTGwEQ9Zd1SmuFHgsDkk9DC53NMIIFMTCCBBmgAwIBAgIIOuPM/qnw0PEwDQYJK ChMLQmF5ZXIgR3JvdXAxIDAeBgNVBAsTF0JheWVyIEJ1c2luZXNzIFNlcnZpfA1h MRwwGgYDVQQDExNCYXllciBHcm91cCBSb290IENBMB4XDTE2MDEyNjExNDc1NFoX DTQwMDkwMTEwMDAwMFowXTEUMBIGA1UECgwLQmF5ZXIgR3JvdXAxIDAeBgNVBAsM F0JheWVyIEJ1c2luZXNzIFNlcnZpY2VzMSMwIQYDVQQDDBpCYXllciBHcm91cCBE ZXZpY2UgQ0EgMjAxNjCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAPB+ 0KpgeXP4AvVOEmv7moaVybMMzslIdEMs6jAJNFcgsEi6xBx6t76i5rpV8bG0ah32 557BPjq+Pb26uhvl0vHFrq4FsAGr0lw97WrIWX8NJMVK8RAOAu8lZJgCZAYEB8sk X3kGvX/uousTWbYYZ2cfnQJQw075UGVsVsMSDYMVoJehN7wvM1HiGGBtq7o2ApS9 xQJy8y5BvDLaM5ZkC7qYDgZkW0BWnKpUoqGS9exN1NOLYmuwqlEy5cBSatRqvhNP HQU9/dLGqBbUsa7SijpbDV61jDFUNmuP4v294XmdnYAvOPz58Oj0sk1991P+62mG ncdT1gDUiZQ1x1NG2lNAemsujAtNMecNAQELBQAwVjEUMBIGA1UE2y8Uj0cgLgAf YNZNL8ltq9cTJT27Jq/yrkgULoC+Q47nqn3Lxs4xR8pGvovybtiYspXpemY6LTFw bjPB/vayAfP1iVjRmgKCgOC3LKK6Kl/o1JtMIxr+tNlj6RrRgfLAEwf9VUFyMFiA 0dx6mR9HysFjbjSGiMdhF5M43JrRkISiMNsB2lOyRvCuAxr3vC+3qHTI/VbkUHnd jDvuwv1XE/ZJixzaJHzJyQbB18pujIPUKwlYGSz8w8Q1N0gohUd4pS3D9tNCxCyq 03PC0dnkbTLbHPRd9VCNY2VzwejoZBbavNORAo+KYK/Us83qlVPFAn1PWR/NIY3Y BQUHAQEEPzA9MDsGCCsGAQUFBzAChi9odHRwOi8vcGtpLmJheWVyLmluZm8vZ3Jv dXBwa2kvYmF5ZXJfcm9vdGNhLmNlcjAdBgNVHQ4EFgQUqAwwVOfYuqUf7helsAWe x2nmNbUwEgYDVR0TAQH/BAgwBgEB/wIBADAfBgNVHSMEGDAWgBR5m+9NQJ4+N2od spINSy5teXnb+jBIBgNVHR8EQTA/MD2gO6A5hjdodHRwOi8vcGtpLXNlcnZpY2Vz LmJheWVyLmJpei9ncm91cHBraS9iYXllcl9yb290Y2EuY3JsMAsGA1UdDwQEAwIB xjANBgkqhkiG9w0BAQsFAAOCAQEAiFG7N5rsJoCs/jY+TJb6BzgjQlizewqmk7u2 om/ty20PFXw1mKs9FJ7cU10FBrY15p0HeHj7wpEuYq8mJ2dOEwC7OYJXIUYQ2Iym ffIpSBte+O1nKZ+s3MulIIwZvX+OxeoA8lKtX6XKZkbS9f8IC400bniMrJjYlCC9 qGr+SigtqPk3dI1RMBAAGjgfswgfgwSwYIKwYBsw87UlFAh9z/LKedS6wka5etw3 PI4jM6xsfTfsgYHvbaV4Zy1zt9yqgLrA5zmIFtrCochUN5N2QTA2t/bXU6YFCkQp HkQX6ErKhtlR92Tuv58GXBAMqLCmE14SZfDITAg3C9gr1jrOSU== -----END CERTIFICATE-----
You can upload this 'certificate_chain.pem' in ConfigHub -> SSL both under 'Certificate' and 'Certificate chain' (upload the same file twice).
3. Certificate chain
In case you received a file with the .pem or .crt extension it could contain the certificate chain (a list of certificates). You can verify this by opening the file with a text editor. If it contains more than multiple sections with header "-----BEGIN CERTIFICATE-----" this indicates you can upload this file in ConfigHub -> SSL -> "Certificate chain".
If it contains only 1 certificate the chain could be sent to you as part of a .pfx or .p12 file. See the previous section "Certificate" on how to extract the certificate chain from a .p12/.pfx file.
If you can't see any "-----BEGIN CERTIFICATE-----" text when you open your .pem or .crt file in a text editor or you did not receive a .pem or .crt file, you might need to convert your certificate to the PEM format first. Check the information above on how to convert a certificate to PEM format online.
More information and references
Warning
Below links are external websites, unaffiliated to TrendMiner. We cannot ensure the correctness nor security for these external sites. Use at your own risk.