Brocade Communications Systems ServerIron ADX 12.4.00a Security Manual page 160

Version 12.4.00a
Table of Contents

Advertisement

6
Configuring SSL on a ServerIron ADX
Bag Attributes: <Empty Attributes>
subject=/DC=org/DC=test/O=root/OU=Security/CN=root
issuer=/DC=org/DC=test/O=root/OU=Security/CN=root
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
12. You can now begin copying the certificates and the key pair files to the ServerIronADX (in the
Unix (Apache)
The following procedure describes the procedure for determining the location of the private key and
certificate files and copying them to a ServerIronADX.
1. On the Apache server, look in the httpd.config file for the following directives; they point to the
2. When you have located the key and certificate files, copy them from the Linux server to the
146
following order):
scp ./server-key.pem admin@192.168.1.1:sslkeypair:server-key:foundry:pem
scp ./server-cert.cer admin@192.168.1.1:sslcert:certchain1:pem
location of the key and certificate files:
SSLCertificateFile .../path/to/mycertfile.crt
SSLCertificateKeyFile .../path/to/mykeyfile.key
NOTE
The default location of the httpd.config file is: /etc/httpd/conf/httpd.conf
ServerIronADX:
scp ./server-key.key admin@192.168.1.1:sslkeypair:server-key:foundry:pem
scp ./server-cert.crt admin@192.168.1.1:sslcert:certchain1:pem
scp ./root-cert.crt admin@192.168.1.1:sslcert:certchain1:pem
Make sure you upload in the same order as the CA hierarchy – only then can the chain be
established properly on the ServerIron.
NOTE
You must upload all of the chain certificates into the same file on the ServerIronADX.
ServerIron ADX Security Guide
53-1002440-03

Advertisement

Table of Contents
loading

Table of Contents