H3C S3610 Series Operation Manual page 5

Ssl-https
Hide thumbs Also See for S3610 Series:
Table of Contents

Advertisement

Operation Manual – SSL-HTTPS
H3C S3610&S5510 Series Ethernet Switches
Caution:
In this instance, Windows Server works as the CA and the Simple Certificate
Enrollment Protocol (SCEP) plug-in is installed on the CA.
II. Network diagram
Figure 1-2 Network diagram for SSL server policy configuration
III. Configuration procedure
1)
Request a certificate for the switch
# Create a PKI entity named en and configure it.
<Sysname> system-view
[Sysname] pki entity en
[Sysname-pki-entity-en] common-name http-server1
[Sysname-pki-entity-en] fqdn ssl.security.com
[Sysname-pki-entity-en] quit
# Create a PKI domain and configure it.
[Sysname] pki domain 1
[Sysname-pki-domain-1] ca identifier ca1
[Sysname-pki-domain-1]
http://10.1.2.2/certsrv/mscep/mscep.dll
[Sysname-pki-domain-1] certificate request from ra
[Sysname-pki-domain-1] certificate request entity en
[Sysname-pki-domain-1] quit
# Create a local key pair through RSA.
[Sysname] public-key local create rsa
# Retrieve the CA certificate.
[Sysname] pki retrieval-certificate ca domain 1
# Request a local certificate.
certificate
1-4
Chapter 1 SSL Configuration
request
url

Advertisement

Table of Contents
loading

This manual is also suitable for:

S5510 seriesS5500-si series

Table of Contents