Uploading Certificates in the MSP Mode

MSP administrators can upload certificates to Classic Central certificate store. They can also map the certificate usage for server and user authentication for the groups associated to a tenant account.

To upload certificates to the certificate store, complete the following steps:

  1. In the WebUI, use the filter to select All Groups.
    The global dashboard is displayed for the MSP Managed Service Provider. The Managed Service Provider (MSP) mode is a multi-tenant operational mode that Aruba Central accounts can be converted into, provided these accounts have subscribed to the Aruba Central app. mode.
  2. Under Maintain, click Organization.

    By default, the Network Structure tab is displayed

  3. Click the Certificates tile.

    The Certificates page is displayed.

  4. To add a new certificate to the Device Certificate, click the + sign.

    The Add Certificate dialog box is displayed.

  5. Enter the certificate name in the Name text box.
  6. Select the certificate type from the Type list.
  7. Select the certificate format from the Format drop-down.

    The supported certificate formats are PEM, DER, and PKCS12.

  8. For server certificates, enter and then retype the passphrase.
  9. Click Choose File to browse to your local directory and select the certificate to upload.
  10. Click Add.

Classic Central allows percolation of certificates that are mapped to the MSP group, to the tenant account.
When a certificate is removed from the Device > Access Points > WLANs >Show Advanced > Security > Certificate Usage section in the group dashboard in MSP, the respective certificate is also removed from the tenant's Certificates Store, if the certificate is mapped to the tenant’s default group and is no longer used by the tenant. If the certificate is used by any of the tenant's non-default groups, the certificate is retained in the tenant’s certificate store, even if the certificate is removed from the MSP. The Device>Access Points> WLANs>Show Advanced >Security> Certificate Usage menu is displayed only when you select a group from the filter.

See Mapping Cloud Guest certificates for information about mapping Cloud Guest certificates.