Documentation

SSLNexus Operator Documentation

R13 Production Operator Guide
Documentation search: use the search field in the left navigation, or press / from any documentation page. Results are limited to SSL Nexus documentation and do not search the marketing website.

Install, initialise and operate SSL Nexus from the guides below. The documentation follows the supported customer workflow and keeps implementation/development details out of normal operator procedures.

Free from first install: SSLNexus starts on the permanent Free tier. You can optionally unlock the standard Enterprise profile for seven days from Settings → Product licence; when the Trial ends, the installation returns to Free and keeps its configuration. See Free and Trial licensing.

Start Here

Review host sizing, DNS, ports and network placement before installation. A dedicated Linux VM/server is strongly recommended for production.

System Requirements -≫ Installation &Amp; First Access -≫ Administration -≫

Operate Certificates

Register deployment targets, bind the appropriate certificate authority to each target, issue/renew certificates and verify the live deployment.

Certificates &Amp; Renewal -≫ Deployment Targets -≫ Certificate Authorities -≫

Delegate Network-Appliance Operations

The R13 Network Operator role gives network engineers read/write access to the network-appliance estate while keeping server, plugin, vendor, licensing, backup and broader platform administration outside their scope. Network Operators can maintain encrypted appliance API credentials and run Test connection and Test CA without bouncing configuration tickets through another team.

Network Operator Role -≫ F5 BIG-IP -≫ VMware vCenter -≫ Palo Alto Networks -≫

Operate As An MSP

Enterprise customers with the MSP HUB add-on can manage their own SSL Nexus estate and multiple isolated customer estates from one control plane. Create customers, assign engineers, switch estate context and suspend/reactivate customers without mixing their day-to-day certificate data.

MSP HUB Administration -≫ MSP Licensing -≫

Cross-Platform Deployment

Linux targets use SSH, Windows targets use WinRM with NTLM, and network appliances use their native HTTPS management APIs. The current first-party target catalogue includes Nginx, Apache, IIS, PaperCut, SAP BI Launch Pad, IWMC, Palo Alto Networks PAN-OS/Panorama, F5 BIG-IP and VMware vCenter.

F5 BIG-IP and VMware vCenter are new R13 implementations and require lab validation against the organisation's actual appliance versions/design before unattended production renewal.

Internal PKI / ACME

The default Enterprise profile lets administrators run SSL Nexus as a governed private ACME CA with EAB enrollment policies, account management, issued-certificate inventory, revocation and CRL. See Internal PKI and private ACME.

Custom Integrations

Enterprise deployments can add versioned Linux or Windows deployment plugins with optional test, verification and rollback hooks. Teams can connect GitHub, Bitbucket Cloud or GitLab for source-controlled playbooks while secret values remain local. See Deployment plugins and Plugin source control.

Operational Controls

Use Policy, Bulk operations, Reporting, Activity & audit and Notifications to operate the estate at scale.

Keep IT Healthy

Licensing -≫ Security -≫ Troubleshooting -≫