Manage the Server Certificate

When you first deploy Tenable Core, Tenable provides a default server certificate for accessing the Tenable Core interface.

Tip: By default, Tenable Core uses separate certificates for Tenable Core and Tenable One OT Exposure. For information about the Tenable One OT Exposure application certificate, see the Tenable One OT Exposure Documentation.

Note: The default certificate is not signed by a recognized certificate authority (CA). If your browser reports that the Tenable Core server certificate is untrusted, Tenable recommends uploading a custom server certificate signed by a trusted certificate authority (CA) for Tenable Core use. For more information, see Upload a Custom Server Certificate. Alternatively, you can download the Tenable-provided CA certificate (cacert.pem) for your server certificate and upload it to your browser.

If you upload a custom server certificate signed by a custom CA, you must also provide certificates in the chain to validate your custom server certificate.

For more information, see: