Skip to main content

Documentation Portal

Troubleshooting SSL issues

This topic describes some common issues when configuring HTTPS/SSL in TrendMiner.

When HTTPS is successfully enabled via ConfigHub the option 'Enable HTTPS' is changed to 'Disable HTTPS' and you can access TrendMiner by browsing to 'https://' instead of 'http://'. If however you cannot enable https in ConfigHub, something is wrong with the certificates you uploaded and TrendMiner could not successfully import them. To figure out what exactly is wrong with the certificates, please check the requirements on this page.

Certificates come in different formats and you might have received multiple (sometimes redundant) files. TrendMiner needs only 3 separate files as input:

1. Private key

You might have received a .key file. To check if this .key file is in the correct format open your .key file in a text editor. It should look like this:

-----BEGIN PRIVATE KEY-----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-----END PRIVATE KEY-----

If you did not receive a .key file, your private key might be included in a .p12 or .pfx file and can be extracted from there. Note that .p12/.pfx formatted certificates are password protected so you should have received a password too.

To extract the private key from the .p12/.pfx file:

  1. Browse to https://www.sslshopper.com/ssl-converter.html

  2. Select your .p12 file and fill in the PFX Password (password you received together with the certificates) and click 'convert'.

    convert_certificate

    The .pem file is now downloaded to your computer.

  3. Open the .pem file with a text editor.

  4. Copy the text from "-----BEGIN PRIVATE KEY-----" up till and including "-----END PRIVATE KEY-----" and paste it in a new text file. Save this file as 'private.key'.

  5. Done, this 'private.key' file can be used to upload in ConfigHub under 'SSL' -> 'Private key'

If you did not receive a .key file nor a .p12/.pfx, your private key might be included in a .pem file you received and it can be extracted from there. To extract the private key from the .pem file, open the .pem file with a text editor and cut out the text from "-----BEGIN PRIVATE KEY-----" up till and including "-----END PRIVATE KEY-----" and paste it in a new text file. Save this file as 'private.key'.

2. Certificate

TrendMiner accepts only certificates in the PEM format. In case you received a file with the .pem or .crt extension it is likely this certificate can be used without further action. To verify, open the .pem/.crt file with a text editor. It should look like this:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

In case your .pem/.crt file contains multiple certificates (multiple '-----BEGIN CERTIFICATE-----' sections) these other certificates represent your certificate chain. In this case your .pem/.crt file can be uploaded both under 'certificate' and 'certificate chain' in ConfigHub.

In case your .pem/.crt file also contains a section '-----BEGIN PRIVATE KEY-----' you have to cut this section from the file and save it in a separate file (using a standard text editor) as a .key file.

It could also be you received a file with a .cer or .der or some other extension. The extension of the file is less relevant but what it relevant is the format of the file. When you open the file with a text editor it should contain the "-----BEGIN CERTIFICATE-----" section, similar to the example above. If you open the file with a text editor and it looks similar to the data below, the certificate is in binary format and needs to be converted.

3082 07fd 3082 05e5 a003 0201 0202 1068
1604 dff3 34f1 71d8 0a73 5599 c141 7230
0d06 092a 8648 86f7 0d01 010b 0500 3072
310b 3009 0603 5504 0613 0255 5331 0e30
0c06 0355 0408 0c05 5465 7861 7331 1030
0e06 0355 0407 0c07 486f 7573 746f 6e31
1130 0f06 0355 040a 0c08 5353 4c20 436f
7270 312e 302c 0603 5504 030c 2553 534c
2e63 6f6d 2045 5620 5353 4c20 496e 7465
726d 6564 6961 7465 2043 4120 5253 4120
5233 301e 170d 3230 3034 3031 3030 3538
3333 5a17 0d32 3130 3731 3630 3035 3833
335a 3081 bd31 0b30 0906 0355 0406 1302
5553 310e 300c 0603 5504 080c 0554 6578
6173 3110 300e 0603 5504 070c 0748 6f75
7374 6f6e 3111 300f 0603 5504 0a0c 0853
534c 2043 6f72 7031 1630 1406 0355 0405
130d 4e56 3230 3038 3136 3134 3234 3331
1430 1206 0355 0403 0c0b 7777 772e 7373
6c2e 636f 6d31 1d30 1b06 0355 040f 0c14
5072 6976 6174 6520 4f72 6761 6e69 7a61
7469 6f6e 3117 3015 060b 2b06 0104 0182
373c 0201 020c 064e 6576 6164 6131 1330
1106 0b2b 0601 0401 8237 3c02 0103 1302
5553 3082 0122 300d 0609 2a86 4886 f70d
0101 0105 0003 8201 0f00 3082 010a 0282
0101 00c7 85e4 646d bd45 09ce f144 ab2d

To convert a binary formatted certificate:

  1. Browse to https://www.sslshopper.com/ssl-converter.html

  2. Select your certificate file (.crt, .cer, .der, ...)

  3. Set "Type of Current Certificate" to "DER/Binary"

  4. Set "Type To Convert To" to "Standard PEM"

  5. Click "Convert certificate"

After converting the certificate you should be able to open it with a text editor, verify it now contains "-----BEGIN CERTIFICATE-----" and use this certificate to upload in ConfigHub -> SSL -> Certificate.

If you only received a .pfx or .p12 file, your certificate can be extracted from there. Note that .p12/.pfx formatted certificates are password protected so you should have received a password too. To extract the certificate from the .p12/.pfx file:

  1. Browse to https://www.sslshopper.com/ssl-converter.html

  2. Select your .pfx/.p12 file and fill in the PFX Password (password you received together with the certificates) and click 'convert'. The .pem file is now downloaded to your computer.

  3. Open the .pem file with a text editor.

  4. Copy all occurrences of "-----BEGIN CERTIFICATE-----" up till and including "-----END CERTIFICATE-----" and paste them sequentially in a new text file. Save this file as 'certificate_chain.pem'.

    Do NOT copy over other text from this .pem file (e.g. the private key section, "Bag Attributes" or "Key Attributes"). The image below shows an example of a converted pfx/p12 file and the resulting .pem file.

    Dummy example of converted .pem file:

    Bag Attributes
        localKeyID: 4F 0D 82 0A CF 80 7C 01 71 98 01 21 A3 92 36 54 15 AA 57 CF 
        friendlyName: PFS_GGSSS_231
    Key Attributes: <No Attributes>
    -----BEGIN PRIVATE KEY-----
    RFTGwEo45dVCfYfwaHscjL0BAQEFAASCBKgwggSkAgEAAoIBAQDnfH0VbZI6JuL+
    aPfJ8tKmXwI3Vz7bt8w6H+eKrywxNt6zgM3Cy8/ZR2lqtpxiqFGoeC0Sa5mCQ8bz
    Mgti2KClweZuMRrr7lyAO01gFi1CWJ6kHTZQg/c9xE2MRSwNJjeZI+z0q8gydSS9
    weH5LvDu/2szYXdcV+8x6c+aMvnv1rpoNz/4RlcFPgNU5zNtR1oAt9cEmqCloolg
    T69dDClyVhCtf1x+1UoXhfnvEjaCShlr26gwFLEpiRX81rWINfGqhl3kX9jhvGIO
    1/6XV5rwoP+0IwAP1qt7x6Koo3ZvmUJQ+2k7yoSO7xxaIGkdqf3eTjkOs3aS8nQP
    msfPPZwpAgMBAAECggEAA9H2PaepoifLjHOwke/GNKGKRp0a9YEDWvlDvid0Lgte
    DHRtWvE97iUKCnpxamU8iM2WyWzHg7YN9RSS40esVrFIMxvrRAbn9COhEOOWIt+J
    RlpR5TAuVlC9D7eXBORd8Rsqi+BMsnIkNXT5B0FBmjdxHpTpJjxwbuWQcWIjZYm2
    DpDSVSYfMlpJsURFTGwEo45dVCfYfwaHscjLR0YlaHpctkmbUTxHmRu5TCs0T27z
    N9eIcq2TimR/KF+FseWy2zxqdNoEihSRLIe9lO6UvOhlpvpTCBF695ciNmTQWaA87
    RXvaLKCCizBTwslrAjvBkHPY3LSKtb1AvHMxFdWTkQKBgQD9MHtjjGvrD44cbWl/
    6MBX/s9UWP+SAsCMeUyg3qHH0iMr1bWK0GTIWj+gYCI1WYsnG6YvieUmS1YKq+6K
    mR+VnmhqZ7doASBK74AfxDeL7sHzsqP4ETIggXhdHyqiaoyj3eM0Qhf6o86OOFg0
    l6YN1uXloluTQUjAb1/WXQe50QKBgQDqDlSTZY/WvyQ4FEP19v6+VVgIaRJY4b1q
    RZDsVXb42N+jqnlJdX2I+a9jPTd5EGIVzGML0PQWzdGhbxAsaaJJj5GK/++sAVLY
    HzzgH2JHRZ7CFSPbqn+L1qFjn5F9rIPjAhIu2IkgE6crh5bhz4ROV/cjh09vqhQu
    wpQceEv62QKBgGhaChDueDAqehTnV1sbj+L0p3kJMVR5g+ihud53w8/6oPpZG3i6
    CT+2SpEL7i102XBl6emf+Oz+kdjWIfvHvofJARoR4zqfdDLOYU02bvpijlelogUE
    xVcCZZxj0wubxJlpQ1JvhziLOP/O4zPR6OO9VYV+lCWt+5EsliBguWVxAoGBAKgH
    W65pp/s9UWP+SAsCMeUyg3qHH0iMr1bWK0GTIWbMGCtuWQ/WnzFzQXzgOby3au1F
    i2arPuC0J7/WZO0NdOWMfTcl4CFC3f+sBV79COgT0hKRbKnBsElq73f+0UtAs3og
    PX+GEoOFuGimsaow+VHpEtJdzKhkmJKtO/loX1uZAoGBAM2FSyrlWR1RASxylP/h
    9ZWTz5N5Sr2tN1fH28VkwJ8or1I04Rpd8h+5XJYnHbtpIBeUDIEJKZ9lwLQCmgCy
    2iwEq9XTJ3SWmdN8zLDJrrd6LfCe4IzmAr72ScFWm6K97iUKCnpxamU8iM2WyWzH
    SiYRVTS0Ou0vF3K31mGig6/
    -----END PRIVATE KEY-----
    Bag Attributes
        localKeyID: 11 7A 0D 82 0A CF 80 CF 3B 7C 7C 01 71 01 21 A3 92 98 36 54
        friendlyName: PFS_GGSSS_231
    subject=O = COMPANY, OU = 1033, CN = PFS_GGSSS
    
    issuer=O = COMPANY Group, OU = Company Services, CN = Company Services CA 2018
    
    -----BEGIN CERTIFICATE-----
    RFTGwg7YN9R+TMKE6Q6tb9Wv9BOyQbYDDjAMBgNVBAoMBUJBWUVSMQ0wCwYDVQQL
    CgwLQmF5ZXIgR3JvdXAxIDAeBgNVBAsMF0JheWVyIEJ1c2luZXNzIFNlcnZpY2Vz
    MSMwIQYDVQQDDBpCYXllciBHcm91cCBEZXZpY2UgQ0EgMjAxNjAeFw0yMTA5Mjgw
    OTA4uiqRrabrQg7UGA4kO77p32SEjoGMTlaFw0yMzEyMzEw7rcnj8ZCDTNRjIZeE
    DAQ1MDM1MRUwEwYDVQQDDAxSUzUwMzVwaW1zMTgwggEiMA0GCSqGSIb3DQEBAQUA
    A4IBDwAwggEKAoIBAQDnfH0VbZI6JuL+aM3Cy8/ZR2lqtpxiqFGoeC0Sa5mCQ8bz
    7rcnj8ZCDTNRjIZeEJJyfjOfmacY9WDpMgti2KClweZuMRrr7lyAO01gFi1CWJ6k
    HTZQg/c9xE2MRSwNJjeZI+z0q8gydSS9weH5LvDu/2szYXdcV+8x6c+aMvnv1rpo
    Nz/4RlcFPgNU5zNtR1oAt9cEmqCloolgT69dDClyVhCtf1x+1UoXhfnvEjaCShlr
    26gwFLEpiRX81rWINfGqhl3kX9jhTCCA4GgAwIBAgIIM33Sf8cWBscwvGIO1/6XV
    x2k7yoSO7xxaIGkdqf3eTjkOs3aS8nQPmsfPPZwpAgMBAAGjggGCMIIBfjBaBggr
    BgEFBQ8wEjoNBG64mpIfEnfgUQGf4CeULusCkgSx/k9f9CcBAQROMEwwSgYIKwYB
    ZXIuYml6L2dyb3VwcGtpL2JheWVyX2RldmljZWNhXzIwMTYuY2VyMB0GA1UdDgQW
    BBSYeg2CCs+AfAFxASGjkjZUFcxX8TAJBgNVHRMEAjAAMB8GA1UdIwQYMBaAFKgM
    MFTn2LqlH+4XpbAFnsdp5jW1ME8GA1UdHwRIMEYwRKBCoECGPmh0dHA6Ly9wa2kt
    c2VydmljZXMuYmF5ZXIuYm5rwoP+0IwAP1qt7x6Koo3ZvmUJQl6L2dyb3VwcGtpL
    Y3JsMA4GA1UdDwEB/wQEAwIFoDApBgNVHSUEIjAgBggrBgEFBQcDAQYIKwYBBQUH
    AwJJyfjOfmacY9WDpOTA4MTlaMDYxIGCisGAQQBgjcUAgIwSQYDVR0BQUHMAKGPm
    bnNhbnRvDQYJKoZIhvcNAQELBQAwXTEUMBIGA1UELmNvbYIddHJlbmRtaW5lci5y
    hvcNAQELBQADggIBAEe31DaylLv4CqF1aHGk/22G+ZS3pyEQAOeO8puBwPh0alAB
    l2VtLAXg5YTW0ej03mPS6v7UQ74F9tPwD0dnTvJBoF3BcIQK4UJyhZaj/T6GM+kR
    90BIAcZa+Pts9q71kwa5dGVInPnJPfaQZxjM1AlrlVv2BGxAK2W32j3cRwoNt0UG
    fkqd1aQYRrClHcRIctapKhkkxuxpeJKoy0JaFGnrNK4QPTeIMgSSLGCRflF1SnAl
    w0W/ZECjS3jERWWxMP1zy1GK3X8jqNoiRJMVsbkB+zMjbikVQb/p7Fedt+QzDLfy
    LnPmv82JheWVyX2RldmljZWNhXzIwMTYuj2DUl6O4XUE91Ww3kvPX572YJ3qCFq8
    ywyk9Hh9+8mGcy5kcy5tb25zYW50by5jb20wDQYJKoZI0nRpCYcHuZI/EJe7c68K
    NvtYc4nLv6Fan4cmxEVU7XpQ755bkSbH19sa3POaIjtRYM+9h4mcoJ5d4YqEaZMy
    Rx2rt2u/uT8AHlzYL3yVsBkGUPhp5bviwUC2yIhme37JaZVkfRQ4J1Mgd/lITwvU
    Toz4Ch0dHA6Ly9wa2ktc2VydmljZXMuYB40v9ZNgp4oLzKXnTTmXMtwmpOnIqJBQ
    fRT7mvjvtugIo1rZJ80ygoaOB6+o20RRvUF+L/iSbMEcf1Pt0+3R
    -----END CERTIFICATE-----
    Bag Attributes: <Empty Attributes>
    subject=O = COMPANY Group, OU = Company Services, CN = Company Root CA
    
    issuer=O = COMPANY Group, OU = Company Services, CN = Company Root CA
    
    -----BEGIN CERTIFICATE-----
    RFTGwEQ9Zd1SmuFHgsDkk9DC53NobGR7MIIDbDCCAlSgAwIBAgIBZzANBgkqhkiG
    ciBHcm91cDEgMB4GA1UECxMXQmF5ZXIgQnVzaW5lc3MgU2VydmljZXMxHDAaBgNV
    BAMTE0JheWVyIEdyb3VwIFJvb3QgQ0EwHhcNMTAwODE4MTAxNjI1WhcNNDIwODE4
    MTAxNjI1WjBWMRQwEgYDVQQKEwtCYXllciBHcm91cDEgMB4GA1UECxMXQmF5ZXIg
    QnVzaW5lc3MgU2VydmljZXMxHDAaBgNVBAMTE0JheWVyIEdyb3VwIFJvb3QgQ0Ew
    ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHFl74aExay2hpuh3NXbG9
    RnyprSx/XVgIWGe65V/LrRBeu80dll95Qr559zv9NDwzhIjYzoe5z7PMIHNTEPyo
    AHKFzDLv7d77TE63XAQGGwAEjI9xJa15aHD653GOfGEqAVLgPVtpF1UhdtVNpUVL
    FErOuvmosE9OAvtM5dfmH0yPPLKiWH+Gr4o9iVhw4lDdq7gW6HNeMAYwZehPSx50
    oyu9cfoALmNyOg8xWgSbL9XNYXgcyYUjFjoXtVxGiYKqDtnQ11yHAStE3fxPcN9Z
    LDX2Du0H4AY3e9NoehxNOs4YVLGj10ZBW041RxhG3sOQRoXomud9XgdAQmiv3eux
    AgMBAAGjRTBDMBIGA1UdEwEB/wQIMAYBAf8CAQIwDgYDVR0PAQH/BAQDAgHGMB0G
    A1UdDgQWBBR5m+9NQJ4+N2odspINSy5teXnb+jANBgkqhkiG9w0BAQUFAAOCAQEA
    nfoR1n3t3dSXbL9dT5Cjonn1cLrGFY/QPoF4xhhC/MKJRB6Uug3OOT1QYC+jDqFm
    UfmmDWQHYQUFADBWMRQwEgYDVQQKEwtCYXllSD1cyasLjIUbQIExIhadKDsceXfb
    nGjabxDSMUOm3SrPomyE6q398zDhQ0N/h091+J5gREx2u8zJzdaFQTrOPLGlLjy3
    scz9PJE8uvD/ie4j7SAETVyiyNbIoTED12xV6FfXxzbK0KU3Q0Ilxrpjd3ELUDvN
    K9XxQ+a8d767x50JjvlwSlYwmo+M6+6m6cZnbVE7wfDnL1bhn+LWx4zRLzwAy78+
    RKcyj78/OSXAzZ9Hc0Kjsc==
    -----END CERTIFICATE-----
    Bag Attributes: <Empty Attributes>
    subject=O = COMPANY Group, OU = Company Services, CN = Company Services CA 2018
    
    issuer=O = COMPANY Group, OU = Company Services, CN = Company Root CA
    
    -----BEGIN CERTIFICATE-----
    RFTGwEQ9Zd1SmuFHgsDkk9DC53NMIIFMTCCBBmgAwIBAgIIOuPM/qnw0PEwDQYJK
    ChMLQmF5ZXIgR3JvdXAxIDAeBgNVBAsTF0JheWVyIEJ1c2luZXNzIFNlcnZpfA1h
    MRwwGgYDVQQDExNCYXllciBHcm91cCBSb290IENBMB4XDTE2MDEyNjExNDc1NFoX
    DTQwMDkwMTEwMDAwMFowXTEUMBIGA1UECgwLQmF5ZXIgR3JvdXAxIDAeBgNVBAsM
    F0JheWVyIEJ1c2luZXNzIFNlcnZpY2VzMSMwIQYDVQQDDBpCYXllciBHcm91cCBE
    ZXZpY2UgQ0EgMjAxNjCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAPB+
    0KpgeXP4AvVOEmv7moaVybMMzslIdEMs6jAJNFcgsEi6xBx6t76i5rpV8bG0ah32
    557BPjq+Pb26uhvl0vHFrq4FsAGr0lw97WrIWX8NJMVK8RAOAu8lZJgCZAYEB8sk
    X3kGvX/uousTWbYYZ2cfnQJQw075UGVsVsMSDYMVoJehN7wvM1HiGGBtq7o2ApS9
    xQJy8y5BvDLaM5ZkC7qYDgZkW0BWnKpUoqGS9exN1NOLYmuwqlEy5cBSatRqvhNP
    HQU9/dLGqBbUsa7SijpbDV61jDFUNmuP4v294XmdnYAvOPz58Oj0sk1991P+62mG
    ncdT1gDUiZQ1x1NG2lNAemsujAtNMecNAQELBQAwVjEUMBIGA1UE2y8Uj0cgLgAf
    YNZNL8ltq9cTJT27Jq/yrkgULoC+Q47nqn3Lxs4xR8pGvovybtiYspXpemY6LTFw
    bjPB/vayAfP1iVjRmgKCgOC3LKK6Kl/o1JtMIxr+tNlj6RrRgfLAEwf9VUFyMFiA
    0dx6mR9HysFjbjSGiMdhF5M43JrRkISiMNsB2lOyRvCuAxr3vC+3qHTI/VbkUHnd
    jDvuwv1XE/ZJixzaJHzJyQbB18pujIPUKwlYGSz8w8Q1N0gohUd4pS3D9tNCxCyq
    03PC0dnkbTLbHPRd9VCNY2VzwejoZBbavNORAo+KYK/Us83qlVPFAn1PWR/NIY3Y
    BQUHAQEEPzA9MDsGCCsGAQUFBzAChi9odHRwOi8vcGtpLmJheWVyLmluZm8vZ3Jv
    dXBwa2kvYmF5ZXJfcm9vdGNhLmNlcjAdBgNVHQ4EFgQUqAwwVOfYuqUf7helsAWe
    x2nmNbUwEgYDVR0TAQH/BAgwBgEB/wIBADAfBgNVHSMEGDAWgBR5m+9NQJ4+N2od
    spINSy5teXnb+jBIBgNVHR8EQTA/MD2gO6A5hjdodHRwOi8vcGtpLXNlcnZpY2Vz
    LmJheWVyLmJpei9ncm91cHBraS9iYXllcl9yb290Y2EuY3JsMAsGA1UdDwQEAwIB
    xjANBgkqhkiG9w0BAQsFAAOCAQEAiFG7N5rsJoCs/jY+TJb6BzgjQlizewqmk7u2
    om/ty20PFXw1mKs9FJ7cU10FBrY15p0HeHj7wpEuYq8mJ2dOEwC7OYJXIUYQ2Iym
    ffIpSBte+O1nKZ+s3MulIIwZvX+OxeoA8lKtX6XKZkbS9f8IC400bniMrJjYlCC9
    qGr+SigtqPk3dI1RMBAAGjgfswgfgwSwYIKwYBsw87UlFAh9z/LKedS6wka5etw3
    PI4jM6xsfTfsgYHvbaV4Zy1zt9yqgLrA5zmIFtrCochUN5N2QTA2t/bXU6YFCkQp
    HkQX6ErKhtlR92Tuv58GXBAMqLCmE14SZfDITAg3C9gr1jrOSU==
    -----END CERTIFICATE-----

    Dummy example of the resulting 'certificate_chain.pem' file:

    -----BEGIN CERTIFICATE-----
    RFTGwg7YN9R+TMKE6Q6tb9Wv9BOyQbYDDjAMBgNVBAoMBUJBWUVSMQ0wCwYDVQQL
    CgwLQmF5ZXIgR3JvdXAxIDAeBgNVBAsMF0JheWVyIEJ1c2luZXNzIFNlcnZpY2Vz
    MSMwIQYDVQQDDBpCYXllciBHcm91cCBEZXZpY2UgQ0EgMjAxNjAeFw0yMTA5Mjgw
    OTA4uiqRrabrQg7UGA4kO77p32SEjoGMTlaFw0yMzEyMzEw7rcnj8ZCDTNRjIZeE
    DAQ1MDM1MRUwEwYDVQQDDAxSUzUwMzVwaW1zMTgwggEiMA0GCSqGSIb3DQEBAQUA
    A4IBDwAwggEKAoIBAQDnfH0VbZI6JuL+aM3Cy8/ZR2lqtpxiqFGoeC0Sa5mCQ8bz
    7rcnj8ZCDTNRjIZeEJJyfjOfmacY9WDpMgti2KClweZuMRrr7lyAO01gFi1CWJ6k
    HTZQg/c9xE2MRSwNJjeZI+z0q8gydSS9weH5LvDu/2szYXdcV+8x6c+aMvnv1rpo
    Nz/4RlcFPgNU5zNtR1oAt9cEmqCloolgT69dDClyVhCtf1x+1UoXhfnvEjaCShlr
    26gwFLEpiRX81rWINfGqhl3kX9jhTCCA4GgAwIBAgIIM33Sf8cWBscwvGIO1/6XV
    x2k7yoSO7xxaIGkdqf3eTjkOs3aS8nQPmsfPPZwpAgMBAAGjggGCMIIBfjBaBggr
    BgEFBQ8wEjoNBG64mpIfEnfgUQGf4CeULusCkgSx/k9f9CcBAQROMEwwSgYIKwYB
    ZXIuYml6L2dyb3VwcGtpL2JheWVyX2RldmljZWNhXzIwMTYuY2VyMB0GA1UdDgQW
    BBSYeg2CCs+AfAFxASGjkjZUFcxX8TAJBgNVHRMEAjAAMB8GA1UdIwQYMBaAFKgM
    MFTn2LqlH+4XpbAFnsdp5jW1ME8GA1UdHwRIMEYwRKBCoECGPmh0dHA6Ly9wa2kt
    c2VydmljZXMuYmF5ZXIuYm5rwoP+0IwAP1qt7x6Koo3ZvmUJQl6L2dyb3VwcGtpL
    Y3JsMA4GA1UdDwEB/wQEAwIFoDApBgNVHSUEIjAgBggrBgEFBQcDAQYIKwYBBQUH
    AwJJyfjOfmacY9WDpOTA4MTlaMDYxIGCisGAQQBgjcUAgIwSQYDVR0BQUHMAKGPm
    bnNhbnRvDQYJKoZIhvcNAQELBQAwXTEUMBIGA1UELmNvbYIddHJlbmRtaW5lci5y
    hvcNAQELBQADggIBAEe31DaylLv4CqF1aHGk/22G+ZS3pyEQAOeO8puBwPh0alAB
    l2VtLAXg5YTW0ej03mPS6v7UQ74F9tPwD0dnTvJBoF3BcIQK4UJyhZaj/T6GM+kR
    90BIAcZa+Pts9q71kwa5dGVInPnJPfaQZxjM1AlrlVv2BGxAK2W32j3cRwoNt0UG
    fkqd1aQYRrClHcRIctapKhkkxuxpeJKoy0JaFGnrNK4QPTeIMgSSLGCRflF1SnAl
    w0W/ZECjS3jERWWxMP1zy1GK3X8jqNoiRJMVsbkB+zMjbikVQb/p7Fedt+QzDLfy
    LnPmv82JheWVyX2RldmljZWNhXzIwMTYuj2DUl6O4XUE91Ww3kvPX572YJ3qCFq8
    ywyk9Hh9+8mGcy5kcy5tb25zYW50by5jb20wDQYJKoZI0nRpCYcHuZI/EJe7c68K
    NvtYc4nLv6Fan4cmxEVU7XpQ755bkSbH19sa3POaIjtRYM+9h4mcoJ5d4YqEaZMy
    Rx2rt2u/uT8AHlzYL3yVsBkGUPhp5bviwUC2yIhme37JaZVkfRQ4J1Mgd/lITwvU
    Toz4Ch0dHA6Ly9wa2ktc2VydmljZXMuYB40v9ZNgp4oLzKXnTTmXMtwmpOnIqJBQ
    fRT7mvjvtugIo1rZJ80ygoaOB6+o20RRvUF+L/iSbMEcf1Pt0+3R
    -----END CERTIFICATE-----
    
    -----BEGIN CERTIFICATE-----
    RFTGwEQ9Zd1SmuFHgsDkk9DC53NobGR7MIIDbDCCAlSgAwIBAgIBZzANBgkqhkiG
    ciBHcm91cDEgMB4GA1UECxMXQmF5ZXIgQnVzaW5lc3MgU2VydmljZXMxHDAaBgNV
    BAMTE0JheWVyIEdyb3VwIFJvb3QgQ0EwHhcNMTAwODE4MTAxNjI1WhcNNDIwODE4
    MTAxNjI1WjBWMRQwEgYDVQQKEwtCYXllciBHcm91cDEgMB4GA1UECxMXQmF5ZXIg
    QnVzaW5lc3MgU2VydmljZXMxHDAaBgNVBAMTE0JheWVyIEdyb3VwIFJvb3QgQ0Ew
    ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHFl74aExay2hpuh3NXbG9
    RnyprSx/XVgIWGe65V/LrRBeu80dll95Qr559zv9NDwzhIjYzoe5z7PMIHNTEPyo
    AHKFzDLv7d77TE63XAQGGwAEjI9xJa15aHD653GOfGEqAVLgPVtpF1UhdtVNpUVL
    FErOuvmosE9OAvtM5dfmH0yPPLKiWH+Gr4o9iVhw4lDdq7gW6HNeMAYwZehPSx50
    oyu9cfoALmNyOg8xWgSbL9XNYXgcyYUjFjoXtVxGiYKqDtnQ11yHAStE3fxPcN9Z
    LDX2Du0H4AY3e9NoehxNOs4YVLGj10ZBW041RxhG3sOQRoXomud9XgdAQmiv3eux
    AgMBAAGjRTBDMBIGA1UdEwEB/wQIMAYBAf8CAQIwDgYDVR0PAQH/BAQDAgHGMB0G
    A1UdDgQWBBR5m+9NQJ4+N2odspINSy5teXnb+jANBgkqhkiG9w0BAQUFAAOCAQEA
    nfoR1n3t3dSXbL9dT5Cjonn1cLrGFY/QPoF4xhhC/MKJRB6Uug3OOT1QYC+jDqFm
    UfmmDWQHYQUFADBWMRQwEgYDVQQKEwtCYXllSD1cyasLjIUbQIExIhadKDsceXfb
    nGjabxDSMUOm3SrPomyE6q398zDhQ0N/h091+J5gREx2u8zJzdaFQTrOPLGlLjy3
    scz9PJE8uvD/ie4j7SAETVyiyNbIoTED12xV6FfXxzbK0KU3Q0Ilxrpjd3ELUDvN
    K9XxQ+a8d767x50JjvlwSlYwmo+M6+6m6cZnbVE7wfDnL1bhn+LWx4zRLzwAy78+
    RKcyj78/OSXAzZ9Hc0Kjsc==
    -----END CERTIFICATE-----
    
    -----BEGIN CERTIFICATE-----
    RFTGwEQ9Zd1SmuFHgsDkk9DC53NMIIFMTCCBBmgAwIBAgIIOuPM/qnw0PEwDQYJK
    ChMLQmF5ZXIgR3JvdXAxIDAeBgNVBAsTF0JheWVyIEJ1c2luZXNzIFNlcnZpfA1h
    MRwwGgYDVQQDExNCYXllciBHcm91cCBSb290IENBMB4XDTE2MDEyNjExNDc1NFoX
    DTQwMDkwMTEwMDAwMFowXTEUMBIGA1UECgwLQmF5ZXIgR3JvdXAxIDAeBgNVBAsM
    F0JheWVyIEJ1c2luZXNzIFNlcnZpY2VzMSMwIQYDVQQDDBpCYXllciBHcm91cCBE
    ZXZpY2UgQ0EgMjAxNjCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAPB+
    0KpgeXP4AvVOEmv7moaVybMMzslIdEMs6jAJNFcgsEi6xBx6t76i5rpV8bG0ah32
    557BPjq+Pb26uhvl0vHFrq4FsAGr0lw97WrIWX8NJMVK8RAOAu8lZJgCZAYEB8sk
    X3kGvX/uousTWbYYZ2cfnQJQw075UGVsVsMSDYMVoJehN7wvM1HiGGBtq7o2ApS9
    xQJy8y5BvDLaM5ZkC7qYDgZkW0BWnKpUoqGS9exN1NOLYmuwqlEy5cBSatRqvhNP
    HQU9/dLGqBbUsa7SijpbDV61jDFUNmuP4v294XmdnYAvOPz58Oj0sk1991P+62mG
    ncdT1gDUiZQ1x1NG2lNAemsujAtNMecNAQELBQAwVjEUMBIGA1UE2y8Uj0cgLgAf
    YNZNL8ltq9cTJT27Jq/yrkgULoC+Q47nqn3Lxs4xR8pGvovybtiYspXpemY6LTFw
    bjPB/vayAfP1iVjRmgKCgOC3LKK6Kl/o1JtMIxr+tNlj6RrRgfLAEwf9VUFyMFiA
    0dx6mR9HysFjbjSGiMdhF5M43JrRkISiMNsB2lOyRvCuAxr3vC+3qHTI/VbkUHnd
    jDvuwv1XE/ZJixzaJHzJyQbB18pujIPUKwlYGSz8w8Q1N0gohUd4pS3D9tNCxCyq
    03PC0dnkbTLbHPRd9VCNY2VzwejoZBbavNORAo+KYK/Us83qlVPFAn1PWR/NIY3Y
    BQUHAQEEPzA9MDsGCCsGAQUFBzAChi9odHRwOi8vcGtpLmJheWVyLmluZm8vZ3Jv
    dXBwa2kvYmF5ZXJfcm9vdGNhLmNlcjAdBgNVHQ4EFgQUqAwwVOfYuqUf7helsAWe
    x2nmNbUwEgYDVR0TAQH/BAgwBgEB/wIBADAfBgNVHSMEGDAWgBR5m+9NQJ4+N2od
    spINSy5teXnb+jBIBgNVHR8EQTA/MD2gO6A5hjdodHRwOi8vcGtpLXNlcnZpY2Vz
    LmJheWVyLmJpei9ncm91cHBraS9iYXllcl9yb290Y2EuY3JsMAsGA1UdDwQEAwIB
    xjANBgkqhkiG9w0BAQsFAAOCAQEAiFG7N5rsJoCs/jY+TJb6BzgjQlizewqmk7u2
    om/ty20PFXw1mKs9FJ7cU10FBrY15p0HeHj7wpEuYq8mJ2dOEwC7OYJXIUYQ2Iym
    ffIpSBte+O1nKZ+s3MulIIwZvX+OxeoA8lKtX6XKZkbS9f8IC400bniMrJjYlCC9
    qGr+SigtqPk3dI1RMBAAGjgfswgfgwSwYIKwYBsw87UlFAh9z/LKedS6wka5etw3
    PI4jM6xsfTfsgYHvbaV4Zy1zt9yqgLrA5zmIFtrCochUN5N2QTA2t/bXU6YFCkQp
    HkQX6ErKhtlR92Tuv58GXBAMqLCmE14SZfDITAg3C9gr1jrOSU==
    -----END CERTIFICATE-----
  5. You can upload this 'certificate_chain.pem' in ConfigHub -> SSL both under 'Certificate' and 'Certificate chain' (upload the same file twice).

3. Certificate chain

In case you received a file with the .pem or .crt extension it could contain the certificate chain (a list of certificates). You can verify this by opening the file with a text editor. If it contains more than multiple sections with header "-----BEGIN CERTIFICATE-----" this indicates you can upload this file in ConfigHub -> SSL -> "Certificate chain".

If it contains only 1 certificate the chain could be sent to you as part of a .pfx or .p12 file. See the previous section "Certificate" on how to extract the certificate chain from a .p12/.pfx file.

If you can't see any "-----BEGIN CERTIFICATE-----" text when you open your .pem or .crt file in a text editor or you did not receive a .pem or .crt file, you might need to convert your certificate to the PEM format first. Check the information above on how to convert a certificate to PEM format online.

More information and references