On This Page
Exchange the Client and Server Public Certificates
This topic describes a secure method for exchanging
public certificates
between the client and server.
Using an out-of-band method to exchange the public certificates provides these key benefits:- Enhanced security—Performing the key exchange over a separate (outside the primary) channel reduces the risk of key interception by a malicious actor.
- Trust establishment—Out-of-band methods often involve more controlled and trusted mechanisms, ensuring that the certificates are received by the intended parties.
- Compliance—Some regulatory standards and security best practices require or recommend out-of-band exchange for critical cryptographic materials.
- To securely exchange public certificate:
- Use encrypted email or a secure file transfer service to send the client's public certificate to the server.
- Use encrypted email or a secure file transfer service to send the server's public certificate to the client.
AFTER COMPLETING THE TASK
After you exchange the client and server public certificates,
continue to Install and Use a Server Certificate on a Client Machine.