For secure and encrypted TLS/SSL communication between a client and a server, certificates are used because they enable secure authentication. Certificates used by iba applications can be administered in a central certificate store.
Before a client can connect to a server, an application certificate must first be configured. Certificates can be provided from both the server and client side. Communication can only take place if each partner trusts the partner certificate.
Certificates can be exchanged spontaneously during connection setup, or you can register the certificates in advance as trusted certificates. If a previously unknown certificate is offered when establishing a connection, the user must interactively accept or reject the certificate. Accepted certificates are automatically entered into the table in the Certificate store and marked as trusted. If the certificate is rejected, no communication will be established.
You can also register certificates and then mark them as "not trusted”. Communication with partners with such certificates is then always denied. Once certificates have been registered, i.e. have been entered in the table in the certificate store, the user will no longer be notified or prompted when communication is established – regardless of whether the certificates are marked as "trusted” or "not trusted”.