Cisco OL-4015-08 User Manual page 538

Cisco router and security device manager user's guide
Table of Contents

Advertisement

Certificate Wizards
Simple Certificate Enrollment Protocol (SCEP)
Cut and Paste/Import from PC
Cisco Router and Security Device Manager Version 2.2 User's Guide
28-36
NTP not configured—The router must have accurate time for certificate
enrollment to work. Identifying a Network Time Protocol server from which
your router can obtain accurate time provides a time source that is not
affected if the router needs to be rebooted. If your organization does not have
an NTP server, you may want to use a publicly available server, such as the
server described at the following URL:
http://www.eecis.udel.edu/~mills/ntp/clock2a.html
DNS not configured—Specifying DNS servers helps ensure that the router is
able to contact the certificate server. DNS configuration is required to contact
the CA server and any other server related to certificate enrollment such as
OCSP servers or CRL repositories if those servers are entered as names and
not as IP addresses.
Domain and/or Hostname not configured—It is recommended that you
configure a domain and hostname before beginning enrollment.
Click this button if you can establish a direct connection between your router and
a Certificate Authority (CA) server. You must have the server's enrollment URL
in order to do this. The wizard will do the following:
Gather information from you to configure a trustpoint and deliver it to the
router.
Initiate an enrollment with the CA server you specified in the trustpoint.
If the CA server is available, display the CA server's fingerprint for your
acceptance.
If you accept the CA server fingerprint , complete the enrollment.
Click this button if your router cannot establish a direct connection to the CA
server or if you want to generate an enrollment request and send it to the CA at
another time. After generation, the enrollment request can be submitted to a CA
at another time. Cut-and-Paste enrollment requires you to invoke the Digital
Certificates wizard to generate a request, and then to reinvoke it when you have
obtained the certificates for the CA server and for the router.
Chapter 28
Public Key Infrastructure
OL-4015-08

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sdm 2.2

Table of Contents