Bosch Building Technologies

    cancel
    Showing results for 
    Search instead for 
    Did you mean: 

    How to setup Certificate based authentication with Bosch?

    To set up certificate-based authentication with Bosch, you'll typically need to follow these steps below:

     

    Step-by-step guide

     

    1. In Configuration Manager, go to User Management and press “Add user”

    a. Note that the option to select “Certificate” is gray-out
    b. Note that the Authorized issuers is the CA you created

    Central_Support_0-1696399545329.png

     

    2.Fill out the User Form

    a.Select type of user e.g. service
    b.Create new
    c.Select a path, this .pfx you will later importinto e.g. Chrome

    Central_Support_1-1696399586367.png

     

    3. Once created, wait a few seconds (it could be needed to toggle between pages) before the “certificate” tick-box becomes active.

    Activate and press save

    Camera will reboot

    Central_Support_2-1696399845733.png

     

    4. Now the Certificate based user has been configured, you can disable the Password login option via the camera webpage.

    All clients who wants to access the camera would need the certificate. Once de-activated, the access via Config-Manager remains

    Central_Support_3-1696399887745.png

     

    5. Once the passwords are deactivated, it looks like:

    1.Password un-selected
    2.Certificate selected
    3.CA filled
    4.All 3 user accounts are Yellow underlined and also gray-out
    5.User certificate is green and its Certification Path shows no warnings

    Central_Support_4-1696399950835.png

     

    Gain certificate based access via Chrome

     

    Option 1 (Option 2 below after this)


    6. Open the Camera webpage (in this example we used Chrome. If correct, you can’t access it):

    Central_Support_5-1696400001383.png

     

    7. Go to Chrome settings > Privacy and Security > Security > Manage Certificates

    Central_Support_6-1696400035433.png

     

    8. Import now the User Certificate (.pfx) you created

    Central_Support_7-1696400087969.png

     

    a. Select to see “all” extensions else you wont see the .pfx

    Central_Support_8-1696400123640.png

    b. See in the path if correct file was selected > press next

    Central_Support_9-1696400157662.png

    c. See before finish >

    i. added to Personal certificates
    ii. PFX format

    Central_Support_10-1696400233649.png

     

    9. Refresh now your Chrome camera tab, and select the certificate

    Central_Support_11-1696400282561.png

     

    • Certificate Information
    Central_Support_12-1696400324116.png

     

    10. Now you will have immediately Certificate based access. No password is required. This option has also been disabled.

    Central_Support_13-1696400357383.png

     

    Option 2

    Is to directly add the certificate to the certificate manager. You can import this on each client PC where you want to access this camera from.

    a. Put the useraccess.pfx certificate on an USB or copy to PC (desktop)
    b. Go to run command certmgr.msc (certificate manager)
    c. Choose Action > All Tasks > Import

    Central_Support_14-1696400399293.png

     

    d. Select “All Files” so you be able to view the .pfx extension, and browse to the Certificate

    Central_Support_15-1696400433521.png

     

    e. Store the certificate in “Personal”

    Central_Support_16-1696400466434.png

     

    f. Once finished, it looks like:

    Central_Support_17-1696400502474.png

     

    g. When you now open the camera webpage via HTTPS in a browser (Edge or Chrome), it shall prompt you to accept the certificate. After pressing OK, you can access the camera

    Central_Support_18-1696400569869.png

     

    Once access it from a different machine as where you initially started from it could be that your connection is not secure.
    To solve, import your “CA certificate > CertifiedAuthority.crt”
    Into your “Trusted root certificates”

    Central_Support_19-1696400636023.png

     

     

     

    Version history
    Last update:
    ‎10-04-2023 08:26 AM
    Updated by:
    Labels (5)
    Contributors
    Icon--AD-black-48x48Icon--address-consumer-data-black-48x48Icon--appointment-black-48x48Icon--back-left-black-48x48Icon--calendar-black-48x48Icon--center-alignedIcon--Checkbox-checkIcon--clock-black-48x48Icon--close-black-48x48Icon--compare-black-48x48Icon--confirmation-black-48x48Icon--dealer-details-black-48x48Icon--delete-black-48x48Icon--delivery-black-48x48Icon--down-black-48x48Icon--download-black-48x48Ic-OverlayAlertIcon--externallink-black-48x48Icon-Filledforward-right_adjustedIcon--grid-view-black-48x48IC_gd_Check-Circle170821_Icons_Community170823_Bosch_Icons170823_Bosch_Icons170821_Icons_CommunityIC-logout170821_Icons_Community170825_Bosch_Icons170821_Icons_CommunityIC-shopping-cart2170821_Icons_CommunityIC-upIC_UserIcon--imageIcon--info-i-black-48x48Icon--left-alignedIcon--Less-minimize-black-48x48Icon-FilledIcon--List-Check-grennIcon--List-Check-blackIcon--List-Cross-blackIcon--list-view-mobile-black-48x48Icon--list-view-black-48x48Icon--More-Maximize-black-48x48Icon--my-product-black-48x48Icon--newsletter-black-48x48Icon--payment-black-48x48Icon--print-black-48x48Icon--promotion-black-48x48Icon--registration-black-48x48Icon--Reset-black-48x48Icon--right-alignedshare-circle1Icon--share-black-48x48Icon--shopping-bag-black-48x48Icon-shopping-cartIcon--start-play-black-48x48Icon--store-locator-black-48x48Ic-OverlayAlertIcon--summary-black-48x48tumblrIcon-FilledvineIc-OverlayAlertwhishlist