Importing CA Certificates for BEMS

By default, BEMS is only aware of public CA certificates. If BEMS must communicate with a server that does not have a certificate issued by a public Certificate Authority (CA), then you must import the non-public CA root certificate from the server's certificate chain into the BEMS host Java keystore or BEMS database using the Dashboard. In this section, non-public CA certificates refers to a certificate that is not trusted by BEMS. BEMS may connect to the following servers in your environment:

  • Microsoft Exchange Server
  • Active Directory Federation Service (ADFS)
  • BlackBerry Proxy
  • Microsoft SharePoint
  • Microsoft Office Web Apps
  • Microsoft Office Server
  • Microsoft SQL Server
  • Microsoft Active Directory using LDAP/LDAPS
You can import the server’s SSL certificates (or the root or intermediate certificate chain) to BEMS using the following methods: