blob: cd1d121d03fd9c2be612829bc97fde8cd85862bc [file] [log] [blame]
#Licensed to the Apache Software Foundation (ASF) under one
#or more contributor license agreements. See the NOTICE file
#distributed with this work for additional information
#regarding copyright ownership. The ASF licenses this file
#to you under the Apache License, Version 2.0 (the
#"License"); you may not use this file except in compliance
#with the License. You may obtain a copy of the License at
#http://www.apache.org/licenses/LICENSE-2.0
#Unless required by applicable law or agreed to in writing,
#software distributed under the License is distributed on an
#"AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
#KIND, either express or implied. See the License for the
#specific language governing permissions and limitations
#under the License.
msgid ""
msgstr ""
"Project-Id-Version: 0\n"
"POT-Creation-Date: 2013-02-02T20:11:57\n"
"PO-Revision-Date: 2013-02-02T20:11:57\n"
"Last-Translator: Automatically generated\n"
"Language-Team: None\n"
"MIME-Version: 1.0\n"
"Content-Type: application/x-publican; charset=UTF-8\n"
"Content-Transfer-Encoding: 8bit\n"
#. Tag: title
#, no-c-format
msgid "Changing the Console Proxy SSL Certificate and Domain"
msgstr ""
#. Tag: para
#, no-c-format
msgid "If the administrator prefers, it is possible for the URL of the customer's console session to show a domain other than realhostip.com. The administrator can customize the displayed domain by selecting a different domain and uploading a new SSL certificate and private key. The domain must run a DNS service that is capable of resolving queries for addresses of the form aaa-bbb-ccc-ddd.your.domain to an IPv4 IP address in the form aaa.bbb.ccc.ddd, for example, 202.8.44.1. To change the console proxy domain, SSL certificate, and private key:"
msgstr ""
#. Tag: para
#, no-c-format
msgid "Set up dynamic name resolution or populate all possible DNS names in your public IP range into your existing DNS server with the format aaa-bbb-ccc-ddd.company.com -> aaa.bbb.ccc.ddd."
msgstr ""
#. Tag: para
#, no-c-format
msgid "Generate the private key and certificate signing request (CSR). When you are using openssl to generate private/public key pairs and CSRs, for the private key that you are going to paste into the &PRODUCT; UI, be sure to convert it into PKCS#8 format."
msgstr ""
#. Tag: para
#, no-c-format
msgid "Generate a new 2048-bit private key"
msgstr ""
#. Tag: programlisting
#, no-c-format
msgid "openssl genrsa -des3 -out yourprivate.key 2048"
msgstr ""
#. Tag: para
#, no-c-format
msgid "Generate a new certificate CSR"
msgstr ""
#. Tag: programlisting
#, no-c-format
msgid "openssl req -new -key yourprivate.key -out yourcertificate.csr"
msgstr ""
#. Tag: para
#, no-c-format
msgid "Head to the website of your favorite trusted Certificate Authority, purchase an SSL certificate, and submit the CSR. You should receive a valid certificate in return"
msgstr ""
#. Tag: para
#, no-c-format
msgid "Convert your private key format into PKCS#8 encrypted format."
msgstr ""
#. Tag: programlisting
#, no-c-format
msgid "openssl pkcs8 -topk8 -in yourprivate.key -out yourprivate.pkcs8.encryped.key"
msgstr ""
#. Tag: para
#, no-c-format
msgid "Convert your PKCS#8 encrypted private key into the PKCS#8 format that is compliant with &PRODUCT;"
msgstr ""
#. Tag: programlisting
#, no-c-format
msgid "openssl pkcs8 -in yourprivate.pkcs8.encrypted.key -out yourprivate.pkcs8.key"
msgstr ""
#. Tag: para
#, no-c-format
msgid "In the Update SSL Certificate screen of the &PRODUCT; UI, paste the following"
msgstr ""
#. Tag: para
#, no-c-format
msgid "Certificate from step 1(c)."
msgstr ""
#. Tag: para
#, no-c-format
msgid "Private key from step 1(e)."
msgstr ""
#. Tag: para
#, no-c-format
msgid "The desired new domain name; for example, company.com"
msgstr ""
#. Tag: para
#, no-c-format
msgid "This stops all currently running console proxy VMs, then restarts them with the new certificate and key. Users might notice a brief interruption in console availability"
msgstr ""
#. Tag: para
#, no-c-format
msgid "The Management Server will generate URLs of the form \"aaa-bbb-ccc-ddd.company.com\" after this change is made. New console requests will be served with the new DNS domain name, certificate, and key"
msgstr ""