This procedure updates the MOVEit Automation server SSL/TLS certificate used by the Automation service. This certificate is configured in the General tab of the Config Utility and is separate from the Web Admin SSL/TLS certificate.

This procedure is specific to the MOVEit Automation Server certificate. To update the Web Admin certificate, see Update the MOVEit Automation Web Admin SSL/TLS Certificate.

Important: This procedure requires restarting the MOVEit Automation service. In failover environments, plan this change carefully to avoid unintended service disruption or to trigger a controlled failover.

Prerequisites

For use in production environments, you should install a certificate from a trusted certificate authority.
  • The certificate must be in PFX format and include the private key.
  • The certificate must be installed in the Local Machine > Personal certificate store on the server.
    • If the certificate is not stored correctly or does not include a private key, the Automation service may fail or users may be unable to sign in.

Update the server SSL/TLS certificate

  1. Open the MOVEit Automation Config Utility application.
  2. Select the General tab, followed by the Certificate ellipsis (…) button. For more information about this setting, see General Tab.
  3. On the Certificate List dialog, expand Local Machine and select My - Personal. A list of certificates in the personal store is displayed. Verify that the certificate appears in this store.
  4. To assign a certificate to the Config, double-click the certificate. Ensure that the selected certificate includes a private key.
  5. Click Apply, then click OK.
  6. To complete the update, restart the MOVEit Automation service. For more information, see Starting and Stopping.

Troubleshooting

If the old and new certificates have the same name, remove the old certificate from the server before completing the update.

If the new certificate does not appear in the list, verify that it is installed in the Local Machine > Personal store.

If the certificate was imported but is not selectable, ensure it includes a private key. If you updated the Web Admin certificate but still see an expired certificate error when signing in, the issue may be with the server certificate configured in the General Tab, not the Web Admin certificate.