Specifying A Trustworthy Ca - 3Com 3C13636 Configuration Manual

Router 3000 ethernet family
Hide thumbs Also See for 3C13636:
Table of Contents

Advertisement

3Com Router 3000 Ethernet Family
Configuration Guide
By default, no PKI domain is specified.
Note:
Typically, a device may belong to two or more PKI domains. Then independent
configuration information is required for each domain. Parameter configuration in PKI
domain view is for this purpose. But currently, one device supports only one PKI
domain, so you need to delete the existing domain first if you want to use a new one.

9.2.3 Specifying a Trustworthy CA

Trustworthy CAs function to provide registration service and issue certificates for
entities. They are essential to PKI. Only when a CA trusted by everyone is available,
can users enjoy the security services with public key technology.
Perform the following configuration in PKI domain view.
Table 9-2 Specify trustworthy CA
Specify a trustworthy CA
Delete the trustworthy CA
By default, no trustworthy CA is specified.
Note:
The standard set CA uses in request processing, certificate issuing and revoking, and
CRL releasing is called CA policy. In general, CA uses files, called certification practice
statements (CPS), to advertise its policy. CA policy can be obtained in out-of-band or
other mode. You should understand CA policies before choosing a CA, for different
CAs may use different methods to authenticate the public key -- subject binding.
You need CA identifiers only when obtaining CA certificates but not when applying for
local certificates.
Operation
3Com Corporation
9-4
Chapter 9 PKI Configuration
Command
ca identifier name
undo ca identifier

Advertisement

Table of Contents
loading

This manual is also suitable for:

3c13636-us - router 30363000 series

Table of Contents