Certificate Management

How Monopam Certificate Manager puts certificates on network appliances, reads what is already on them, and undoes a change. There is one guide per appliance family. Each follows the same order: the steps to deploy a certificate first, then everything else the appliance supports.

Addresses, names and certificates in the screenshots are examples. Each guide describes the current release.

Certificates on F5 BIG-IP

Everything Monopam can do with a BIG-IP: read what is already on it, put a certificate on it, see which virtual servers serve it, split a shared profile without disturbing its neighbours, and undo any of it. All over the iControl REST API. No agent, no SSH, nothing installed on the appliance.

Certificates on FortiManager

Everything Monopam can do with a FortiManager: read the certificates already held in its global store, its ADOMs and the FortiGates it manages, import a certificate into an ADOM, repoint an SSL-inspection profile at it, install the change down to a device, and undo any of it. All over the JSON-RPC API. No agent, no SSH, nothing installed on the appliance.

Certificates on Citrix NetScaler

Everything Monopam can do with a NetScaler ADC: upload a certificate and key, update the certKey object in place, bind it to an SSL virtual server, list what the appliance already holds, and undo any of it. All over the NITRO REST API. No agent, no SSH, nothing installed on the appliance.

Certificates on Palo Alto Panorama

Everything Monopam can do with a Panorama or a PAN-OS firewall: read the certificate stores it keeps, import a certificate and its key, repoint an SSL/TLS service profile, commit, push the change on to a device group, and undo any of it. All over the XML API. No agent, no SSH, nothing installed on the appliance.

All pages in this section