Installing A Switch Certificate; Activating A Switch Certificate - HP A7533A - Brocade 4Gb SAN Switch Base Administrator's Manual

Hp storageworks fabric os 5.3.x administrator guide (5697-0244, november 2009)
Hide thumbs Also See for A7533A - Brocade 4Gb SAN Switch Base:
Table of Contents

Advertisement

It might take several days to receive the certificates. If the certificates arrive by email, save them to an FTP
server. If the CA provides access to the certificates on an FTP server, make note of the path name and make
sure you have a login name and password on the server.

Installing a switch certificate

Perform this procedure on each switch:
1.
Connect to the switch and log in as admin.
2.
Enter this command:
switch:admin> seccertutil import
3.
Select a protocol, enter the IP address of the host on which the switch certificate is saved, and enter
your login name and password:
Select protocol [ftp or scp]: ftp
Enter IP address:
Enter remote Directory:
Enter certificate name (must have ".crt" suffix):192.1.2.3.crt
Enter Login Name:
Enter Password: *****
Success: imported certificate [192.1.2.3.crt].
To use this certificate, run the configure command to activate it
The certificate downloads to the switch.

Activating a switch certificate

Enter the configure command and respond to the prompts that apply to SSL certificates:
SSL attributes
Certificate File
CA Certificate File
Select length of crypto key
HTTP attributes
Secure HTTP enabled
Example
Configure...
System services (yes, y, no, n): [no]
ssl attributes (yes, y, no, n): [no] yes
Certificate File. (filename or none): [10.33.13.182.crt] 192.1.2.3.crt
CA Certificate File. (filename or none): [none]
Select length of crypto key.
(Valid values are 40, 56, and 128.): (40..128) [128]
http attributes (yes, y, no, n): [no] yes
HTTP Enabled (yes, y, no, n): [yes] no
Secure HTTP Enabled (yes, y, no, n): [no] yes
After you exit the configure command, the HTTP daemon restarts automatically to handle
HTTPS requests.
192.10.11.12
path_to_remote_Directory
your_account
Type yes.
Enter the name of the switch certificate file: for example,
192.1.2.3.crt.
If you want the CA name to be displayed in the browser window,
enter the name of the CA certificate file; otherwise, skip this
prompt.
Enter the encryption key length (40, 56, or 128).
Type yes.
Type yes.
Fabric OS 5.3.0 administrator guide
97

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents