[Ipsec] Manage Ca Certificates; [Ipsec] Local Certificate Store; [Ipsec] Manage Local Certificate; [Ipsec] Certificate Revocation List - Colubris Networks CN3000 Administrator's Manual

Table of Contents

Advertisement

Chapter 11 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -Configuration parameters - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Chapter 11
[IPSec] Manage
Use this box to manage the root CA certificate.
Certificate
CA certificates
This box displays the list of installed certificates.
Remove
Select a certificate in the list and click this button to remove it.
View
Select a certificate in the list and click this button to view it.
[IPSec] Local
This is the certificate the CN3000 uses to identify itself to IPSec peers.
Note: If the local certificate includes a CA certificate, both certificates are installed.
certificate store
Certificate Request Wizard
The wizard helps you generate a certificate request which can be used to obtain a
signed certificate from a certificate authority. Once you have obtained the certificate,
you can use the wizard to install it on the CN3000.
Certificate file
Specify the name of the certificate file or click Browse to select it.
Password
Specify the certificate password.
Install
Click this button to install the certificate.
[IPSec] Manage
Use this box to manage the local certificate.
Certificate
local certificate
This box displays the common name of the installed certificate.
Remove
Click this button to remove the installed certificate.
View
Click this button to view the installed certificate.
[IPSec]
This is the certificate revocation list (CRL) issued by the certificate authority.
The CN3000 uses the certificate revocation list (CRL list to determine if the certificates
certificate
provided by clients during the authentication process have been revoked. The CN3000
revocation list
will not establish a security association with a client that submits a revoked certificate.
There are two ways the CN3000 can obtain a CRL.
• You can manually install it.
• The CN3000 can automatically install a CRL based on information contained in a
CRL file
Specify the name of the CRL file or click Browse to select it.
Install
Click this button to install the CRL.
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - 265 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
client certificate. This only occurs only if a CRL is not installed, or if the installed CRL
has expired.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents