Bastion Certificate Requirements

Bastion Certificate Requirements

  1. The Bastion requires SSL certificate. Either in .pfx format or .crt + .key format. In order for the Bastion to be able to use the certificate the Private Key password has to be supplied (it can be encrypted).
  2. The certificate should be signed by a public Root CA. This is optional if using a reverse proxy in front of the Bastion with SSL offloading capabilities since the load balancer could ignore the certificate being not valid.
  3. The certificate needs to have ADFS in its “Subject Alternative names” section.

Related content