Cisco ASA 5505 Configuration Manual page 735

Asa 5500 series
Hide thumbs Also See for ASA 5505:
Table of Contents

Advertisement

Chapter 35
Configuring Digital Certificates
Figure 35-1
User Enrollment Webpage
for PKCS12 Users Certificate
Enrollment and Retrieval
Supported CA Servers
The adaptive security appliance supports the following CA servers:
Certificate Enrollment
The adaptive security appliance needs a CA certificate for each trustpoint and one or two certificates for
itself, depending upon the configuration of the keys used by the trustpoint. If the trustpoint uses separate
RSA keys for signing and encryption, the adaptive security appliance needs two certificates, one for each
purpose. In other key configurations, only one certificate is needed.
The adaptive security appliance supports enrollment with SCEP and with manual enrollment, which lets
you paste a base-64-encoded certificate directly into the terminal. For site-to-site VPNs, you must enroll
each adaptive security appliance. For remote access VPNs, you must enroll each adaptive security
appliance and each remote access VPN client.
OL-20339-01
The Local CA
HTTP CRL retrieval
Cisco IOS CS
Baltimore Technologies
Entrust
Microsoft Certificate Services
Netscape CMS
RSA Keon
VeriSign
ASDM and CLI
configuration and
management
Security Device
with Local CA
Configured
Local Database in flash memory
or Mounted external file system
Cisco ASA 5500 Series Configuration Guide using ASDM
Information About Digital Certificates
(CIFS or FTP)
35-7

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Asa 5510Asa 5540Asa 5520Asa 5550Asa 5580

Table of Contents