Symptom

When opening the UMS Web App, the browser displays a security warning and/or reports a certificate error.  

Environment

  • UMS Web App (UMS 6.06 or higher)

Problem 

The customer uses an end certificate from a root CA that is not known to the browser. This is the case for self-signed certs, e.g. the default implementation.

Solution

Exporting the Certificate from the UMS

  1. In the UMS Console, go to UMS Administration > Global Configuration > Certificate Management > Web.
  2. Make sure all end certificates in use are derived from the same root CA certificate.
  3. Select the root CA certificate in use, open the context menu, and select Export certificate.
  4. Select an appropriate location, select the correct file extension for your browser (most common: *.crt or *.cert), and click Save.
  5. Add the certificate to the trusted certificates of your browser. For instructions, see Importing the Certificate into the Browser.

Importing the Certificate into the Browser

The procedures described here may differ if you have a different browser version.

The following browsers are described here:

Firefox

  1. Click  to open the menu.
  2. Select Options.
  3. Select Privacy & Security.
  4. Scroll down to Certificates and click View Certificates.
  5. Click Import.
  6. Select your certificate file and click Open.
  7. Activate Trust this CA to identify websites and click OK.
  8. Close the Certificate Manager window with OK.
  9. Restart the browser.
    The browser can access the UMS Web App without problems.


Chrome

  1. Click  to open the menu.
  2. Select Settings.
  3. Go to Privacy and security and select Security.
  4. Scroll down and click the symbol next to Manage certificates.
  5. In the Certificates dialog, click Import.
  6. In the Certificate Import Wizard, click Next.
  7. Click Browse to open the file chooser.
  8. Go to the location of your certificate, select it and click Open.
  9. Back in the Certificate Import Wizard, click Next.
  10. Select Place all certificates in the following store and click Browse to determine the certificate store.
  11. In the Select Certificate Store dialog, select Trusted Root Certificate Authorities and click OK.
  12. Back in the Certificate Import Wizard, click Next.
  13. Review your settings and click Finish.
  14. Confirm the Security Warning with Yes.
  15. If the import was successful, a success message is displayed.

    The certificate is installed on your system.
  16. Restart the browser.
    The browser can access the UMS Web App without problems.

Microsoft Edge

  1. Make sure you have administrator permissions.
  2. Go to the location where you have stored the certificate and double-click the certificate file.
    The Certificate dialog of your Windows system opens.
  3. Click Install Certificate....
  4. Define whether the certificate should be installed for the current user only or for all users (Local Machine) and click Next.
  5. Confirm the User Account Control dialog.
  6. Define whether the certificate store should be determined automatically or manually and click Next.
  7. Review your settings and click Finish.

    If the import was successful, a success message is displayed.

    The certificate is installed on your system.
  8. Restart the browser.
    The browser can access the UMS Web App without problems.