You import trusted roots so that the specific device can trust the certificate sent by other computers at runtime. After you import a trusted root, assign it to the proper trust store associated with a device, which allows the device to trust certificates signed by the trusted root.
Click Security > Trusted Roots.
Click Import, then specify a name for the certificate.
This is a system-wide, unique name used by Access Manager.
Select one of the following methods to import the public key:
Certificate data file (DER/PEM/PKCS7): Select this method to browse to a file. Click Browse to locate the file on your file system.
Certificate data text (PEM/Base64): Select this method to paste Base64-encoded certificate data text.
Click OK.