66 Chapter 2 Configuring serversNN46110-600— File extension—cacert— MIME Type—application/x-x509-ca-cert— Application to use—netscape.exee Click OK to complete the Netscape configuration.f Save the base64 format root CA certificate onto a file with extension.cacert.g Select File > Open Page and open the file. Netscape Communicatorguides you to install the CA certificate.• In Internet Explorer, select Tools > Internet options > content >certificates > trusted root certification authority tab and select import.3 Import the root certificate that issued your VPN Router server certificate intothe JRE certificate store.Configuring SSL/TLS and configuring HTTP servicesTo configure SSL/TLS and enable HTTP services:1 Select Services > Available and check HTTPS services on the public and/orprivate interfaces. This allows TCP port 443 through the system filter. If youenable HTTPS on both the public and private interfaces, it allows port 443through either interface. Figure 10 shows the Services window with port 443selected for HTTPS.Note: To satisfy a further name check by Netscape browsers, make theVPN Router server certificate common name either a DNS name thatresolves to the management IP address or the management IP address.Note: You can change the port from port 443 to run HTTPS. This allowsyou to configure an SSL VPN server at the default 443 port while stillallowing HTTPS management.