Various features and applications require certificates to be provided. For (root) certificates on the client, note the following:
Unless otherwise stated, the certificates must be Base64-encoded (ASCII) with file name extension .crt.
- To transfer certificates to the client, use the Scout feature Files configured for transfer. For further information, see Files configured for transfer in the Scout guide.
- On the client, the certificates are stored in the local certificate store /setup/cacerts/ or in a sub-directory.
The following table provides an overview:
|Smart card user logon
The certificates are specified in the Scout Console under Security > User authentication > Certificates
|User authentication / AD+smart card||/setup/cacerts/login|
|Secure connection (TLS)||Firefox||/setup/cacerts/browser1|
|Secure connection (TLS)||Chromium||/setup/cacerts/browser|
|Secure connection (TLS)||Builtin Browser
|Secure connection (TLS)||Citrix Workspace-App||/setup/cacerts/ and
|Secure connection (TLS)||VMware Horizon client||/setup/cacerts/
|Secure connection (TLS)||eLuxRDP||/setup/cacerts|
|Network logon||WLAN drivers / WPA-Supplicant (802.1X)
Network Access Control / SCEP
|VPN / OpenVPN||BaseOS||/setup/openvpn|
|VPN / Cisco AnyConnect||Cisco AnyConnect|| /setup/cacerts2 and
|Firmware update including certificate check||BaseOS||/setup/cacerts|
StoreFront can be called using a Citrix session or a browser.