Ensure that eDirectory is configured as the CA.
Issue the certificate for the Primary Server:
Log in to the eDirectory tree as an administrator with the appropriate rights.
For more information about the appropriate rights, see the Entry Rights Needed to Perform Tasks section in the NetIQ Certificate Server 3.3 documentation.
From themenu, click .
Browse for and select the zcm.csr file, then click .
Complete the wizard by accepting the default values.
Specify the certificate basic constraints, then click
Specify the validity period and the effective and expiration dates, then click.
Choose to save the certificate in the DER-format, then specify a name for the certificate.
Export the Organizational CA's self-signed certificate:
Log in to eDirectory from ConsoleOne.
In thecontainer, right-click the , then click .
In thetab, select the self-signed certificate.
When prompted to export the private key, click.
Export the certificate in DER format and choose the location where you want to save the certificate.
You should now have the three files that you need to install ZENworks using an external CA.