The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

CA-signed certificate for Web Server Authentication

Prev Next

The Manager/Central Manager uses SSL certificate to establish a trusted TLS Connection with the client machines. By default, the Manager uses a self-signed certificate.

You can also use a CA-signed certificate chain issued by trusted CAs such as Verisign, GeoTrust, etc. to establish trust between the Manager server and the client machine.

Note

The CA-signed certificate for Web Server Authentication must be in P12 format.

To view the SSL Certificate page in the Manager, go to Manager → <Admin Domain Name> → Setup → Certificates. Select GUI Certificate tab. The GUI Certificate tab is displayed.

It allows you to perform the following actions:

Action Description
This option enables importing the CA-signed certificate to the Manager.

Note

The

option is available only when the Manager uses a self-signed certificate for Web Server authentication.

This option enables deleting the CA-signed certificate in the Manager. When a CA-signed certificate in the Manager is deleted, the manager automatically starts using a self-signed certificate for Web Server authentication.

Note

The

option is not available when the Manager uses a self-signed certificate for Web Server authentication.

Export Certificate This option enables you to export the certificate in the Manager/Central Manager used for Web Server Authentication .