Certificates In D-Link Firewall - D-Link DFL-1600 User Manual

Network security firewall
Hide thumbs Also See for DFL-1600:
Table of Contents

Advertisement

8.4. X.509 Certificates
- Verify the signatures of all certificates in the certification path.
- Fetch the CRL for each certificate to verify that none of the
certificates have been revoked.
Identification Lists
In addition to verifying the signatures of certificates, D-Link firewalls also
employ identification lists (See 22.1.4,
identification list is a list naming all the remote identities that are allowed
access through a specific VPN tunnel, provided the certificate validation
procedure described above succeeded.
8.4.2
X.509 Certificates in D-Link Firewall
X.509 certificates can be uploaded to the D-Link Firewall for use in
IKE/IPSec authentication, webauth etc. There are two types of certificates
that can be uploaded, self signed certificates and remote certificates
belonging to a remote peer or CA server.
Example:
This example describes how to upload a X.509 certificate to a D-Link
Firewall. The certificate may either be self-signed or belonging to a remote
peer or CA server.
WebUI
:
Upload Certificate
Objects
X.509 Certificates
Enter the following:
Name: Name of the certificate.
Options
Select one of the following:
Upload self-signed X.509 Certificate
Upload a remote certificate
Then click OK and follow the instructions on the screen.
Uploading a Certificate to a D-Link Firewall
D-Link Firewalls User's Guide
Identification
Lists(IDLists)). An
Add
X.509 Certificate:
51

Advertisement

Table of Contents
loading

Table of Contents