Export the BlackBerry Proxy CA certificate chain to your desktop
If your environment enforces the use of SSL certificate validation when BEMS communicates with BlackBerry Dynamics, you must export the root and intermediate BlackBerry UEM certificate chains used by the BlackBerry Proxy and import them into the BEMS Java keystore or upload them into the BEMS database using the BEMS Dashboard.
- In a browser, enter the FQDN of the BlackBerry Proxy server and port 17433 (for example, https://<Proxy_server_FQDN>:17433). You may see a certificate error message because the certificate might be signed by the BlackBerry UEM or Control CA or another internal CA, but the browser does not recognize it as a well-known CA.
- To open the Certificate dialog, click the certificate icon in the URL field.
- Click Certificate (Invalid).
- Click Certification Path.
- Click the root certificate. The root certificate is the first item in the Certificate hierarchy.
- Click View Certificate.
- Click the Details tab.
- Click Copy to File.
- Click Next.
- Select Base-64 encoded X.509 (.CER).
- Click Next.
- Enter a name for the certificate and export it to your desktop.
- Click Save.
- Click Finish.
- Click OK.