Users Guide

NOTA: Server Administrator no recomienda la actualización a versiones principales de Java Runtime Environment
(JRE), aconseja limitarse a parches de seguridad y versiones menores. Para obtener más detalles, consulte las
notas de la versión de Server Administrator (incluidas en la aplicación Server Administrator) o en dell.com/
openmanagemanuals.
NOTA: Si JRE no existe en el sistema donde se ejecuta Server Administrator, se utiliza la instancia de JRE
suministrada con Server Administrator.
4. Cuando haya terminado de congurar las opciones en la ventana Preferencias del servidor, haga clic en Aplicar.
NOTA: Reinicie Server Administrator Web Server para que los cambios se apliquen.
X.509 Certicate Management
NOTE: You must be logged in with Administrator privileges to perform certicate management.
Web certicates are necessary to ensure the identity of a remote system and ensure that information exchanged with the remote
system are not viewed or changed by others. To ensure system security, it is recommended that:
You generate a new X.509 certicate, reuse an existing X.509 certicate or import a certicate chain from a Certication
Authority (CA).
All systems that have Server Administrator installed have unique host names.
To manage X.509 certicates through the Preferences home page, click General Settings, click the Web Server tab, and click X.
509 Certicate.
The following are the available options:
Generate a new certicate — Generates a new self-signed certicate used for SSL communication between the server running
Server Administrator and the browser.
NOTE: When using a self-signed certicate, most web browsers display an
untrusted
warning as the self-signed
certicate is not signed by a Certicate Authority (CA) trusted by the operating system. Some secure browser
settings can also block the self-signed SSL certicates. The Server Administrator web GUI requires a CA-signed
certicate for such secure browsers.
Certicate Maintenance — Allows you to generate a Certicate Signing Request (CSR) containing all the certicate information
about the host required by the CA to automate the creation of a trusted SSL web certicate. You can retrieve the necessary
CSR le either from the instructions on the Certicate Signing Request (CSR) page or by copying the entire text in the text box
on the CSR page and pasting it in the CA submit form. The text must be in the Base64–encoded format.
NOTE: You also have an option to view the certicate information and export the certicate that is being used in the
Base64–encoded format, which can be imported by other web services.
Import certicate chain — Allows you to import the certicate chain (in PKCS#7 format) signed by a trusted CA. The
certicate can be in DER or Base64-encoded format.
Import a PKCS12 Keystore — Allows you to import a PKCS#12 keystore that replaces the private key and certicate used in
Server Administrator web server. PKCS#12 is public keystore that contains a private key and the certicate for a web server.
Server Administrator uses the Java KeyStore (JKS) format to store the SSL certicates and its private key. Importing a PKCS#12
keystore to Server Administrator deletes the keystore entries, and imports a private key and certicate entries to the Server
Administrator JKS.
NOTE: An error message is displayed if you either select an invalid PKCS le or when you type an incorrect password.
Certicados de servidor SSL
Server Administrator Web Server está congurado para usar el protocolo de seguridad SSL estándar del sector para transferir datos
cifrados a través de una red. Basado en una tecnología de cifrado asimétrico, el SSL está ampliamente aceptado para facilitar una
comunicación autenticada y cifrada entre clientes y servidores a n de evitar manipulaciones en una red.
Un sistema habilitado para SSL puede realizar las siguientes tareas:
Autenticarse ante un cliente habilitado con SSL
Permitir a los dos sistemas establecer una conexión cifrada
El proceso de cifrado proporciona un alto nivel de protección de datos. Server Administrator utiliza la forma de cifrado más segura,
disponible habitualmente para los exploradores de Internet en Norteamérica.
Server Administrator Web Server cuenta con un certicado digital SSL exclusivo autormado de manera predeterminada. Puede
reemplazar el certicado SSL predeterminado por un certicado rmado por una Autoridad de certicados (CA) conocida. Una
33