Requirements for certificates

  • Certificates must be in the PEM format.
  • Certificates must be installed in the User Personal Certificates folder on the machine. Browsers are run on a user basis and thus will check for certificates in the User's cert store as opposed to the Computer or Machine cert store. Refer to Microsoft's guide page discussing Working with Certificates for more information.
    • Root and intermediate certs need to also be installed in the Trusted Root Certification Authority folder.
  • Forcepoint ONE SSE can support intermediate certs, however you have to have all certs contained in one root CA file that you upload to Forcepoint ONE SSE.
  • Refer to Client Certificates for more information about browser and OS specific limitations when using client certificates.