Generating Certificate Requests To Screenos Devices (Nsm Procedure) - Juniper NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01 Manual

Configuring screenos devices guide
Hide thumbs Also See for NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01:
Table of Contents

Advertisement

Generating Certificate Requests to ScreenOS Devices (NSM Procedure)

Table 67: Certificate Requests
Certificate Requests
Name
Phone
Domain Component
Unit/Department
Organization
County/Locality
State
Country
E-mail
IP Address
FQDN
Key Pair Type
Key Pair Length
Create Self-Signed Certificate
(ScreenOS 5.1 and higher only)
Copyright © 2010, Juniper Networks, Inc.
Loading Local Certificate into NSM Management System on page 270
Self-Signed Certificates in NSM Overview on page 267
To send a certificate request prompt to the managed device, right-click the device and
select Certificates > Generate Certificate Request. Enter the information as described
in Table 67 on page 269.
Your Action
Enter the name of the certificate requestor; typically, this is the person who administrators the
security device.
Enter the telephone number of the certificate requestor.
Enter one or more domain components for the certificate requestor. Multiple entries must be
separated by commas.
Enter the unit or department of the certificate requestor.
Enter the organization of the certificate requestor.
Enter the county or locality of the certificate requestor.
Enter the state of the certificate requestor.
Enter the country of the certificate requestor.
Enter the e-mail address of the certificate requestor.
Enter the IP address of the certificate requestor.
Enter the fully qualified domain name of the security device.
Select RSA or DSA encryption.
Select the key length: 512, 786, 1024, or 2048. Ensure that your certificate authority can support
the key length you select. Key lengths greater than 1024 might require generation times longer
than 10 minutes.
Select this option to use the self-signed certificate on a device running ScreenOS 5.1 and later.
Because the self-signed certificate is both the local certificate and the CA certificate, when
this option is enabled the SCEP options are automatically disabled.
Chapter 8: Configuring VPNs
269

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the NETWORK AND SECURITY MANAGER 2010.4 - CONFIGURING SCREENOS DEVICES GUIDE REV 01 and is the answer not in the manual?

Table of Contents