Nortel 3050 Command Reference Manual page 154

Vpn gateway
Hide thumbs Also See for 3050:
Table of Contents

Advertisement

154 Command Reference
Table 44
Certificate Menu Options (/cfg/cert) (cont'd.)
Command Syntax and Usage
import <protocol [tftp|ftp|scp|sftp]> <server by host name or IP
address> <file name>
export <protocol [tftp|ftp|scp|sftp]> <server by host name or IP
address> <export file format[pem|der|net|pkcs12]>
Copyright © 2007 Nortel Networks
.
Generates a self-signed certificate and private key for testing purposes.
After providing the requested information, the certificate and key are
generated immediately. However, to activate the test certificate and
key, you need to execute the apply command.
Note 1: If a certificate and key already exist for the current certificate
index number, they are overwritten when you execute the apply
command. You should therefore always choose an unused certificate
index number before creating a test certificate. To check if a certificate
and key already exist for the current index number, use the info
command.
Note 2: When generating the certificate, all questions need not be
answered. Only one of Common Name and E-mail is strictly required.
Installs a private key and certificate by downloading it from a
TFTP/FTP/SCP/SFTP server. If the private key has been password
protected, you are prompted for the correct password phrase.
Keys in the following formats can be imported using the import
command: PEM, DER, NET, PKCS8 (used in WebLogic), PKCS12, and
keys in the proprietary format used in MS IIS 4. Keys from Netscape
Enterprise Server or iPlanet Server can also be imported, but require
that you first use a conversion tool. Contact Nortel for more information
about the conversion tool.
Certificates in the following formats can be imported using the import
command: PEM, DER, NET, PKCS7, and PKCS12.
If a key or certificate is already installed using the current certificate
index number, that key/certificate will be overwritten by installing
another key/certificate to the same index number. Use the keyinfo
and show command respectively, to verify that the current certificate
index number is not in use.
Note: This command cannot be used on an ASA FIPS running in FIPS
mode, if the certificate file also contains the private key, or if you need
to import the private key associated with the public key in the certificate
from an external source. Due to the FIPS security requirements, FIPS
mode prohibits importing private keys.
Nortel VPN Gateway
Command Reference
NN46120-103 01.01 Standard
10 September 2007

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

3070Nvg 3050Nvg 3070Svm 10001000 con?guration guide

Table of Contents