Generating System Manager identity certificates

Last Updated : Jun 05, 2026 |

About this task

Use this procedure to generate System Manager security identity certificates.

Avaya Aura® Web Gateway does not accept a generated System Manager certificate if:

  • The certificates contains an unsupported critical extension.

  • The certificate expired.

  • The start date of the certificate is in the future.

Avaya Aura® Web Gateway displays a warning message if the generated certificate cannot be imported. To fix the issue, contact the System Manager administrator.

Procedure

  1. Click the SMGR Certificates tab.
  2. In the Generate Identity Certificates via System Manager area, update the following fields if they are not automatically populated:
    • System Manager Address: To update this setting, navigate to General Network Settings > System Manager.

    • System Manager HTTPS Port: To update this setting, navigate to General Network Settings > System Manager.

    • Common Name: To update this setting, navigate to External Access > HTTP Reverse Proxy.

  3. In the Node Address drop-down menu, do one of the following to generate a certificate:
    • Choose a node for a cluster configuration.

      If you choose the All Cluster Nodes option, certificates will be generated automatically for all cluster nodes.

    • Keep the default setting for a standalone configuration.

  4. In System Manager Enrollment Password, type the enrollment password as defined on the System Manager web console.
  5. Click Generate Certificates to start requesting certificates from System Manager.
  6. Restart the Avaya Aura® Web Gateway after the certificates are generated.

    This completes all the certificate updates. For a cluster environment, only the remote node is restarted.