ESET Online Help

Search English
Select the category
Select the topic

Peer Certificates

If a Certification Authority is present on you system, you should create a peer certificate for individual ESET PROTECT components. Each component (ESET Management Agent and ESET PROTECT Server) requires a specific certificate.

add_new_default New

This option is used to create a new certificate. These certificates are used by the ESET Management Agent and ESET PROTECT Server.

add_new_default APN/ABM Certificate

This option is used to create a new APN/ABM certificate. This certificate is used by the MDM. This action requires a valid license.

icon_cert_usage Certificate usage

You can also check which clients are using this ESET PROTECT certificate.

icon_tags Tags

Edit tags (assign, unassign, create, delete).

edit_default Edit

Select this option to edit a description of an existing certificate from the list.

audit_log Audit Log

View the Audit Log for the selected item.

icon_export Export or icon_export Export as Base64

Export a certificate as a .pfx file or .txt (Base64) file. This file is necessary if you install the ESET Management Agent locally on a computer or when installing MDM.

icon_undo_default Revoke

If you no longer want to use a certificate, select Revoke. This option invalidates the certificate permanently, the certificate is effectively blacklisted. This information is sent to ESET Management Agents during the next connection. Revoked certificates will not be accepted by ESET PROTECT On-Prem.


Ensure there are no ESET Management Agents (or other components) left using the certificate before you revoke it. After the certificate is revoked, components will not be able to connect to ESET PROTECT Server. Reinstall components using a valid certificate to restore functionality.

move_default Access Group

A certificate or a Certification Authority can be moved to other group. Then it becomes available to users who have sufficient rights for this group. To easily find a certificate's home group select the certificate and click move_default Access Group in the drop-down menu. The home group of the certificate is displayed in the first line of the pop up menu (for example, /All/San Diego. See our sample scenario to learn more about sharing certificates).


You will see only those certificates located in your home group (assuming you have read permission for certificates). Certificates which are created during the ESET PROTECT On-Prem installation are located in the All group and only administrators have access to them.

Click the Show Revoked button to view all the revoked certificates.

Agent certificate for server assisted installation - This certificate is generated during server installation if you select the Generate certificates option.

Filters and layout customization

You can customize the current Web Console screen view:

Manage the side panel and main table.

Add filters and filter presets. You can use tags for filtering the displayed items.