The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Generate Vulnerability Manager SSL custom certificate for Manager

Prev Next

You can generate Vulnerability Manager SSL custom certificate for the Manager. To do so, perform the following steps.

Task

  1. Download and unzip the Vulnerability Manager Certificate Manager Installer.
    Select the correct version for your installation of Vulnerability Manager.
  2. Copy this file to the Vulnerability Manager server and run it.
    This installs the Vulnerability Manager Certificate Management Tool.

    Note

    The Certificate Management Tool must be run on the server hosting the 'FCM Server Component' depending on the version of the Vulnerability Manager (7.0 or 7.5).

  3. Launch the Vulnerability Manager Certificate Management Tool.
    1. Click the Create SSL Certificates tab.
    2. Type the name of the Manager server in the Host Address field and click Resolve.
    3. After the hostname is resolved, click Create Certificate using Common Name.

      Note

      After running the Vulnerability Manager Certificate Management Tool on the server hosting the Vulnerability Manager FCM Server application, a .zip file (ThirdPartyAPI-SSL.zip) gets generated. It contains certificates for the 3rd-party clients that can be used for SSL client authentication with the Vulnerability Manager engine. The .zip file contains the following certificate files:

      • FoundstoneCAPublicCertificate.pem
      • FoundstoneClientCertificate.p12
      • FoundstoneClientCertificate.pem
      • FoundstoneClientPublicCertificate.cer
    4. Save the resulting file (ThirdPartyAPI-SSL.zip) to the desktop.
    5. The tool also creates a new passphrase for the certificate.
    6. Copy and save the passphrase in a text file and name it passphrase.txt.
    7. Copy passphrase.txt into ThirdPartyAPI-SSL.zip.