D-Link xStack DGS-3620 Series Reference Manual page 492

Layer 3 managed stackable gigabit switch
Hide thumbs Also See for xStack DGS-3620 Series:
Table of Contents

Advertisement

®
xStack
DGS-3620 Series Layer 3 Managed Stackable Gigabit Switch Web UI Reference Guide
based management while utilizing the SSL function, the web browser must support SSL encryption and the header
of the URL must begin with https://. (Ex. https://xx.xx.xx.xx) Any other method will result in an error and no access
can be authorized for the web-based management.
Users can download a certificate file for the SSL function on the Switch from a TFTP server. The certificate file is a
data record used for authenticating devices on the network. It contains information on the owner, keys for
authentication and digital signatures. Both the server and the client must have consistent certificate files for optimal
use of the SSL function. The Switch only supports certificate files with .der file extensions. Currently, the Switch
comes with a certificate pre-loaded though the user may need to download more, depending on user
circumstances.
To view this window, click Security > SSL Settings as shown below:
To set up the SSL function on the Switch, configure the parameters in the SSL Settings section described.
The fields that can be configured are described below:
Parameter
SSL Status
Cache Timeout (60-
86400)
Click the Apply button to accept the changes made.
To set up the SSL cipher suite function on the Switch, configure the parameters in the SSL Cipher suite Settings
section described below:
Parameter
RSA with
RC4_128_MD5
RSA with 3DES EDE
Figure 9-80 SSL Settings window
Description
Use the radio buttons to enable or disable the SSL status on the Switch. The default
is Disabled.
This field will set the time between a new key exchange between a client and a host
using the SSL function. A new SSL session is established every time the client and
host go through a key exchange. Specifying a longer timeout will allow the SSL
session to reuse the master key on future connections with that particular host,
therefore speeding up the negotiation process. The default setting is 600 seconds.
Description
This cipher suite combines the RSA key exchange, stream cipher RC4 encryption
with 128-bit keys and the MD5 Hash Algorithm. Use the radio buttons to enable or
disable this cipher suite. This field is Enabled by default.
This cipher suite combines the RSA key exchange, CBC Block Cipher 3DES_EDE
491

Advertisement

Table of Contents
loading

Table of Contents