    How about the ability to export/import the SSL certificate by web GUI?

    I’d be against that.

    The certificate is the central and single point of success or failure of security for the fog client. If an attacker could get it by any means at all, all security is compromised. Having an actual feature that allows it to be downloaded would increase the risk of compromise several times fold.

    a local admin ought to be the only person that can touch it.

