5.3.3.1.1. Configuration
CA Configuration
If the router communicates directly with the CA, the administrator must add the following to the /var/
lib/rhpki-ca/conf/flatfile.txt file (one-time PIN file) on the CA:
UID:<IP address of the router>
PWD:<One-time PIN>
For example:
UID:172.16.24.238
PWD:1212
Note
If the router communicates directly with the RA, the above configuration is not required.
RA Configuration
On the RA, the PIN is generated when the request is approved, and stored in the SQLite database.
Consequently, no configuration is required.
Procedure 5.5. Submitting the certificate request
After the CA and the RA have been installed and appropriately configured, the Router Administrator
submits the certificate request.
On the RA, navigate to the SSL End Users Services page, and then click SCEP Enrollment.
1.
Click Request Submission - Manager
2.
3.
Enter the following information:
• Client ID: cisco1
• Site ID: <site IP address>
• Your mail: <youremail@example.com>. This is the address to which the certificate approval
notice will be sent.
Click Submit. You should see a response similar to the following:
4.
Your request has been successfully submitted.
Request ID:
1
Using the End Users Services Interface
149
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.3 - ADMINISTRATION and is the answer not in the manual?
Questions and answers