Nortel 2350 Installation And Basic Configuration Manual page 91

Wlan-security switch 2300 series
Hide thumbs Also See for 2350:
Table of Contents

Advertisement

WSS Software automatically installs the keys and self-signed certificate into its certificate and key store.
Note.
When you select an option to import information from the WSS into WLAN
Management Software , it displays a dialog that shows the switch's certificate information
and provides options for handling the certificate. You can configure WLAN Management
Software to always accept self-signed certificates from WSSs. (For more information, see
the Nortel WLAN Management Software Reference Manual.)
Installing a Certificate Assigned by a Certificate Authority
You can install a WSS certificate assigned by a CA in one of the following ways:
Install a PKCS #12 object file—To use this method:
a
Use TFTP to download onto the switch a PKCS #12 object file containing a public-private
key pair and a certificate assigned by the CA.
b
Assign a one-time password to authenticate the PKCS #12 object file.
c
Install the public-private key pair and certificate from the PKCS #12 object file into the
switch's certificate and key store.
(For more information, see
Install a PKCS #7 object file—To use this method:
a
Generate a public-private key pair on the switch.
b
Generate a certificate request on the switch.
c
Use the request (a PKCS #10 object) to obtain a certificate from the CA.
d
Install the certificate assigned by the CA (a PKCS #7 object file) into the switch's
certificate and key store.
(For more information, see
In either case, you also need to install the CA's own certificate on the switch and on the WLAN Management
Software or Web View host. The CA's certificate allows WLAN Management Software or Web View to
verify that the switch certificate assigned by the CA is valid.
Note.
Some certificate authorities refer to PKCS object files as base64 encoded files.
Installing a Certificate from a PKCS #12 Object File
To install a public-private key pair and a certificate assigned by a CA in a PKCS #12 object file, use the
following commands:
copy tftp://ip-addr/source-url [destination-url]
crypto otp admin string
crypto pkcs12 admin filename
WLAN—Security Switch 2300 Series Installation and Basic Configuration Guide
Configuring a 2370, 2360, or 2380 Switch for Basic Service 91
"Installing a Certificate from a PKCS #12 Object File" on page
"Installing a Certificate from a PKCS #7 Object File" on page
91.)
92.)

Advertisement

Table of Contents
loading

This manual is also suitable for:

2370236023802361

Table of Contents