Install certificates in a ControlSuite NLB environment

A fail-safe Equitrac configuration is running multiple Device Control Engine (DCE) nodes to leverage Network Load Balancing (NLB). In these configurations, the ControlSuite server and all DCE nodes should use the same certification to support automatic switching between nodes.

First set up the environment, then last proceed with the following steps to sync the certificates on all nodes and the Equitrac server.

  1. On the Equitrac server start the Config Assistant.
  2. In the main menu on the left, select Certificate management.
  3. Select all the services in the Certificate Management list.
  4. In the drop-down list on the top, select Generate Self-Signed.

    CS Configuration Assistant - Certificate Management

    The Generate Certificate dialog box appears.

  5. Provide the data to include in the certificate.

    Generate Certificate dialog box
    1. Enter a Friendly name describing the certificate.
    2. Enter the date when the validity of the certificate to expire.
    3. Select Save to file.
    4. Enter a Password.
    5. Enter or browse to a File path where to save the certificate file.
    6. Click OK.

    The certificate is generated, and the file is saved on the provided path.

  6. Import this certificate file on each node of the load balancing pool.
    1. Copy the certificate to a local folder on the node.
    2. Start the Config Assistant on the node.
    3. In the main menu on the left, select Certificate management.

      The Certificate Management list appears with a single item (Equitrac).
      Import Certificate button

    4. Click the Import Certificate button (Import Certificate button) on the right.
    5. Click Browse, and select the certificate in the local folder you saved.
    6. Enter the password.
    7. Click OK
    8. Click Apply to confirm the certificate.
  7. Verify that you installed the certificates successfully on all the computers (both ControlSuite servers and DCE nodes) involved in the pool.
    1. On the computer, Go to Control Panel > Manage computer certificates > Personal > Certificates.

      The list of certificates appear.

    2. Verify by comparing certificate properties, such as Friendly name and Expiration date, that each computer uses the same certificate.