Managing Certificate Authority (Ca) Certificates; Importing A Ca Certificate - Extreme Networks Altitude 4700 Series Product Reference Manual

Software version 4.1
Hide thumbs Also See for Altitude 4700 Series:
Table of Contents

Advertisement

Managing Certificate Authority (CA) Certificates

Certificate management includes the following sections:
Importing a CA Certificate on page 91
Creating Self Certificates for Accessing the VPN on page 92

Importing a CA Certificate

A certificate authority (CA) is a network authority that issues and manages security credentials and
public keys for message encryption. The CA signs all digital certificates that it issues with its own
private key. The corresponding public key is contained within the certificate and is called a CA
certificate. A browser must contain this CA certificate in its Trusted Root Library so it can trust certificates
"signed" by the CA's private key.
Depending on the public key infrastructure, the digital certificate includes the owner's public key, the
certificate expiration date, the owner's name and other public key owner information.
The access point can import and maintain a set of CA certificates to use as an authentication option for
Virtual Private Network (VPN) access. To use the certificate for a VPN tunnel, define a tunnel and select
the IKE settings to use either RSA or DES certificates. For additional information on configuring VPN
tunnels, see
"Configuring VPN Tunnels" on page
CAUTION
Loaded and signed CA certificates will be lost when changing the Access Point's firmware version using
either the GUI or CLI. After a certificate has been successfully loaded, export it to a secure location to ensure its
availability after a firmware update.
If restoring the Access Point's factory default firmware, you must export the certificate file BEFORE restoring the
Access Point's factory default configuration. Import the file back after the updated firmware is installed.
Refer to your network administrator to obtain a CA certificate to import into the access point.
NOTE
Verify the access point device time is synchronized with an NTP server before importing a certificate to
avoid issues with conflicting date/time stamps. For more information, see
(NTP)" on page
110.
Altitude 4700 Series Access Point Product Reference Guide
225.
"Configuring Network Time Protocol
91

Advertisement

Table of Contents
loading

Table of Contents