You are viewing an old version of this page. View the current version.
Compare with Current
View Page History
Version 1
Current »
The process for obtaining SSL certificates to be used to secure HTTP and MQTT traffic to Chariot is the same whether using an external, commercial Certificate Authority (CA) or your company's internal Certificate Authority (CA). Cirrus Link doesn't recommend any specific Certificate Authority (CA), but we do recommend using an external, well-known and trusted Certificate Authority for issuing your SSL certificates.
- Create your CSR (Certificate Signing Request)
- Generate/select the keypair to use to generate the CSR
- The private part of this public/private keypair is one of the artifacts that you will upload to Chariot to enable HTTPS/MQTTS. Please be sure to keep this keypair in a known, secure location.
- CSR required fields...
- Submit your CSR to your Certificate Authority (CA) of choice
- Proof of control
- Certificates you should expect to receive from the Certificate Authority (CA)
- Signed SSL server certificate signed by the CA
- CA chain (chain-of-trust): typically contains the Root CA certificate and any intermediate CA certificates in a single file