...
This article explains how to renew SSL certificate on SEG V2 in Windows and UAG.
Refer to the steps below to renew SSL for SEG V2 windows and SEG V2 on Unified Access Gateway (UAG) Upload the SSL Certificate through the Workspace ONE UEM Console Perform the following steps when the SSL certificate is uploaded through the Workspace ONE UEM console: In the UEM console, navigate to Email > Settings and edit the existing email configuration and click Next.Navigate to the Deployment tab and click Next.Upload the latest SEG server SSL certificate.Enter the password when prompted, click Next, and save the settings.Restart the SEGv2 service on all the servers to fetch the latest configuration and bind the updated SSL certificate. For more information see VMware Doc page Configure the SEG V2 under JVM Arguments or System Settings. Upload the SSL Certificate locally during the SEGv2 Installation for the Windows Server Perform the following steps when the SSL certificate is uploaded locally during the SEGv2 installation for the Windows server: Run the SEGv2 installer in the server box where the SEG is installed.Select the Modify option to modify the installation when prompted.Click Next to continue.Upload the latest SEG server SSL certificate when prompted.Enter the password and click Next to finish the setup.SEGv2 service now binds to the updated SSL certificate. Upload the SSL Certificate locally for the SEG Edge Service on the UAG Administator (Admin) User Interface (UI) Perform the following steps when the SSL certificate is uploaded locally for the SEG Edge service on the UAG Admin UI: Log in to the UAG Admin UI.Open the SEGv2 configuration under the Edge Service settings.Enable the Add SSL certificate toggle button.Click Select against the SSL certificate field.Upload the latest SEG server SSL certificate and enter the password when prompted.Save the configuration and wait for the appliance agent to complete the modification of the SEG Edge service.SEG Edge service now binds to the updated SSL certificate. SEG SSL Certificate: Switching between Upload Locally and Upload on Email Configuration Options If a customer needs to change the way how SSL certificate is supplied to SEG V2 process - i.e., upload it locally instead of supplying it as part of Email Configuration at Workspace ONE UEM Console or vice versa, follow these steps: 1. Modify the Email Configuration > Server Settings section as per the new requirements in Workspace ONE UEM Console. a) If new requirement is to upload the SSL certificate locally on the SEG server box, check the Upload Locally option and save the configuration. b) If new requirement is to upload SSL certificate as part of Email Configuration, uncheck the Upload Locally option, upload the certificate and save the configuration. 2. If using SEG on UAG, reconfigure the SEG edge service by adding or removing the locally provided SSL certificate. 3. If using SEG on Windows, re-run the SEG installer and follow the installer wizard.