3Com 3C13636 Configuration Manual page 1195

Router 3000 ethernet family
Hide thumbs Also See for 3C13636:
Table of Contents

Advertisement

3Com Router 3000 Ethernet Family
Configuration Guide
# Configure entity DN.
[RouterA] pki entity en
[RouterA-pki-entity-en] ip 202.38.163.1
[RouterA-pki-entity-en] common-name RouterA
# Create local key pair using RSA algorithm.
[RouterA-pki-entity-en] rsa local-key-pair create
[RouterA-pki-entity-en] quit
# Request certificate
[RouterA] pki retrieval-certificate ca domain 1
[RouterA] pki request-certificate 1
2)
Configure Router B:
# Use the defaulted IKE policy on Router B and enable PKI (rsa-signature) to
authenticate identity.
[RouterB] ike proposal 1
[RouterB-ike-proposal-1] authentication-method rsa-signature
[RouterB-ike-proposal-1] quit
# Configure parameters on PKI domain.
[RouterB]pki domain 1
[RouterB-pki-domain-1] ca identifier CA2
[RouterB-pki-domain-1]
http://2.1.1.100/certsrv/mscep/mscep.dll
[RouterB-pki-domain-1] certificate request entity en
[RouterB-pki-domain-1] ldap-server ip 2.1.1.102
# Configure CRL distribution point location (if CRL check is disabled, this configuration
is not necessary).
[RouterB -pki-domain-1] crl url ldap://2.1.1.102
[RouterB-pki-domain-1] quit
# Configure entity DN.
[RouterB] pki entity en
[RouterB-pki-entity-en] ip 202.38.162.1
[RouterB-pki-entity-en] common-name RouterB
# Create local key pair using RSA algorithm.
[RouterB-pki-entity-en] rsa local-key-pair create
[RouterB-pki-entity-en] quit
# Request certificate
[RouterB] pki retrieval-certificate ca domain 1
[RouterB] pki request-certificate 1
certificate
3Com Corporation
9-20
Chapter 9 PKI Configuration
request
url

Advertisement

Table of Contents
loading

This manual is also suitable for:

3c13636-us - router 30363000 series

Table of Contents