The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Generate Certificate Signing Request (CSR)

Prev Next

Certificate Signing Request is used to apply for a CA-signed certificate. To generate a CSR from the Manager, perform the following steps:

  1. To generate a CSR for the Manager, go to Manager → <Root Admin Domain> → Setup → Certificates.

    To generate a CSR for the Sensor, go to Devices → <Root Admin Domain> → Devices → <Device Name> → Setup → Trust Certificates.

  2. In the CA-Signed Certificate section, click Generate CSR. The Generate CSR window opens.

    GenerateCSR_1.png
  3. Enter the following details in the Generate CSR window:

    Option

    Definition

    Key Size

    Select the required RSA key size from the drop-down. 2048-bit and 4096-bit RSA keys are supported.

    Common Name

    Displays the IP Address of the device.

    Organization

    Legal name of your organization. This field should not contain any wildcard characters (such as * or ?).

    Organizational Unit

    [Optional] Name of the organizational unit.

    Note

    Additional organizational units can be added based on your requirements. A maximum of 10 organizational units can be added.

    City

    [Optional] City where the organization is located. This field should not contain any abbreviations.

    State/Province

    [Optional] State or province where the organization is located. This field should not contain any abbreviations.

    Country

    Country where the organization is located.

    Note

    The maximum length for Organization, and Organizational Unit fields are 64 characters. The maximum length for City and State/Province fields are 128 characters.

  4. Click Generate.