Key Length
Digest Algorithm
Lifetime (days)
Country Code
State or Province
City
Organization
Email Address
d. Click on
e. Click on
to export the client certificate file in ".crt" format.
Click on
to export the client key file in ".key" format.
f.
Choose the key length for generating the client certificate.
Following values are available:
•
1024: 1024-bit keys are no longer sufficient to protect
against attacks. Not recommended.
•
2048: 2048-bit keys are a good minimum. Recommended.
•
4096: 4096-bit keys are accepted by nearly all RSA
systems. Using 4096-bit keys will dramatically increase
generation time, TLS handshake delays, and CPU usage
for TLS operations.
Choose the digest algorithm:
•
SHA1: This digest algorithm provides a 160-bit fingerprint
output based on arbitrary length input.
•
SHA-256: This digest algorithm generates an almost-
unique, fixed size 256-bit (32-byte) hash. Hash is a one-way
function – it cannot be decrypted back
Enter the validity date for the client certificate in days.
Example: "120".
Select a country code from the dropdown list.
Example: "MA".
Enter a state name or province.
Example: "Casablanca".
Enter a city name.
Example: "Casablanca".
Enter the organization name.
Example: "GS".
Enter an email address.
Example: "user@grandstream.com".
after completing all the fields for the client certificate.
GWN7000 User Manual
Version 1.0.6.28
P a g e
|
83