- CheckMates
- :
- Products
- :
- Developers
- :
- API / CLI Discussion
- :
- How do I change the https certificate for Sandblas...
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
How do I change the https certificate for Sandblast API?
Hey guys,
we want to use the sandblast API to connect to our sandblast appliance.
UserCheck and Management Portal use a trusted CA signed certificate, however I'm not able to configure the certificate used for temain (:18194). How do I configure ted to use the same certificate I configured for UserCheck?
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
Got call with CKP TS regarding this issue.
You can't change certificate for Sandblast API.
TEmain process uses SIC certificate.
Best Regards
MMM
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Not sure it's possible, but hopefully Matan Mishan can confirm/deny.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Christian,
Please try to follow this SK :SandBlast Agent for Browsers - working with Security Gateway or SandBlast Threat
It should be helpful for this topic.
Feel free to contact for further assistance...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Matan,
I cannot see, where this article might help me with my problem. As stated before:
I already use a PKI with trusted certificates for UserCheck, admin portal and TX scrubbing frontend, so the TE already uses the correct certificate for most web services.
But the API itself still uses the SIC cert. The SK doesn't mention, where to change that (exporting the CA certificate and using it as trusted CA on clients is not a solution in my case).
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Guys
Same here... question is quite old. It looks like on port 18194 sandblast is using the internal CA and NOT the certificate provided in the SmartConsole > GW properties > UserCheck > Certificate > import
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
Got call with CKP TS regarding this issue.
You can't change certificate for Sandblast API.
TEmain process uses SIC certificate.
Best Regards
MMM
