On the System Manager web console, click Services > Security.
In the navigation pane, click Certificates > Authority.
Click RA Functions > Add End Entity.
On the Add End Entity page, in End Entity Profile, select INBOUND_OUTBOUND_TLS.
Type the username and password.
The password is mandatory for each end entity. Without the password, you cannot generate the certificate from System Manager because you require the password to authenticate the certificate generation request.
Enter the relevant information in the fields.
The system automatically selects the following:
ID_CLIENT_SERVER in Certificate Profile
tmdefaultca in CA
User Generated in Token
With User Generated, the system generates the certificate by using CSR.
The options are P12 file, JKS file, and PEM file.
Click Add.
The system displays the message End Entity <username> added successfully.