Cisco VPN 3002 Reference Manual page 177

Hardware client
Hide thumbs Also See for VPN 3002:
Table of Contents

Advertisement

Chapter 12
Administration
Certificate Fields
A certificate contains some or all of the following fields:
Field
Subject
Issuer
CN
OU
O
L
SP
C
Serial Number
Signing Algorithm
Public Key Type
Certificate Usage
MD5 Thumbprint
OL-1893-01
Content
The person or system that uses the certificate. For a CA root certificate, the
Subject and Issuer are the same.
The CA or other entity (jurisdiction) that issued the certificate.
Subject and Issuer consist of a specific-to-general identification hierarchy: CN,
OU, O, L, SP, and C. These labels and acronyms conform to X.520
terminology, and they echo the fields on the Administration | Certificate
Management | Enrollment screen.
Common Name: the name of a person, system, or other entity. This is the
lowest (most specific) level in the identification hierarchy.
For the VPN 3002 self-signed SSL certificate, the CN is the IP address on the
Ethernet 1 (Private) interface at the time the certificate is generated. SSL
compares this CN with the address you use to connect to the VPN 3002 via
HTTPS, as part of its validation.
Organizational Unit: the subgroup within the organization (O).
Organization: the name of the company, institution, agency, association, or
other entity.
Locality: the city or town where the organization is located.
State/Province: the state or province where the organization is located.
Country: the two-letter country abbreviation. These codes conform to ISO
3166 country abbreviations.
The serial number of the certificate. Each certificate issued by a CA must be
unique among all certificates issued by that CA. CRL checking uses this serial
number.
The cryptographic algorithm that the CA or other issuer used to sign this
certificate.
The algorithm and size of the certified public key.
The purpose of the key contained in the certificate, for example: digital
signature, certificate signing, nonrepudiation, key or data encipherment, etc.
A 128-bit MD5 hash of the complete certificate contents, shown as a 16-byte
string. This value is unique for every certificate, and it positively identifies the
certificate.
If you question a root certificate's authenticity, you can check this value with
the issuer.
Administration | Certificate Management | View
VPN 3002 Hardware Client Reference
12-51

Advertisement

Table of Contents
loading

Table of Contents