This section describes how to replace the default TMWS CA certificate with your company's CA certificate for HTTPS decryption on the on-premises gateway. Your own CA certificate will take precedence over the CA certificate you have configured on the management console.
If you need to stop using your company's CA certificate, run the following command:
bash /opt/trend/iwss_usr/bin/use_default_ca.sh disable
The CA certificate that you have configured on the management console applies immediately.
If you need to reuse your company's CA certificate, run the following command:
bash /opt/trend/iwss_usr/bin/use_default_ca.sh enable
Your company's CA certificate applies immediately.
Execution of this command leads to a proxy service reboot. Trend Micro recommends you run the command at a proper time to avoid affecting your service continuity.