To use an X.509 certificate originally obtained for another product (for example, a web server) with Tarantella, you need to decrypt the private key for that certificate. You can only decrypt private keys that were originally encrypted by a product that uses SSLeay or OpenSSL certificate libraries.
See Sharing web server and Tarantella server certificates for more information.