Export certificates used on a NetScaler appliance as PFX file
Prerequisites
Export certificate using the CLI
-
Obtain the relevant certificate and key file from the NetScaler appliance and place in a local directory of the workstation. All the certificate and key files are in the
nsconfig/ssldirectory.Certificates from a NetScaler appliance can be obtained using WinScp. -
Open the CLI and change the directory to the location of the OpenSSL executable (in
<drive>:\openssl\binby default). -
Type the following (PFX file type is used in this example):
C:\OpenSSL\bin>openssl pkcs12 -export -in <yourcertificatename.cer> -inkey <yourcertificatekey.key> -out <desiredfilename.pfx>Parameter description:
**yourcertifcatename.cer** - Certificate name present on the NetScaler appliance.
**yourcertificatekey** - Key associated with the certificate `yourcertificatename`.
**desiredfilename** - Name you want to assign to the PFX file.
-
Type Export Password and enter the desired password for the PFX file. Reenter the export password to confirm the password.
Export certificate using the GUI
-
Navigate to Traffic Management > SSL, under Tools section click Manage Certificates / Keys / CSRs link.CSR link
-
Select the check box next to the certificate you want to download and click Download.Select certificate
-
Navigate to Traffic Management > SSL > Export PKCS#12Export certificateIn the PKCS12 field, choose the output file name for the PFX file.In the Certificate File Name field, choose the certificate file stored in the local disk.In the Key Filename field, choose the key file stored in the local disk.In the Export Password field, enter the export password and click OK.