Axis P3354 User Manual page 36

Hide thumbs Also See for P3354:
Table of Contents

Advertisement

AXIS P3354
System Options
Certificates
CA Certificate
Client certificate
Client private key
Settings
EAPOL version
EAP identity
Private key password
Enable IEEE 802.1X
Certificates
Certificates are used to authenticate devices on a network. Typical applications include encrypted web browsing (HTTPS), network
protection via IEEE 802.1X and secure upload of images and notification messages for example via email. Two types of certificates
can be used with the Axis product:
Server/Client certificates - to authenticate the Axis product
CA certificates - to authenticate peer certificates, for example the certificate of an authentication server in case the Axis product is
connected to an IEEE 802.1X protected network.
Note
Installed certificates, except preinstalled CA certificates, will be deleted if the product is reset to factory default. Preinstalled
CA certificates that have been deleted will be reinstalled.
A Server/Client certificate can be self-signed or issued by a Certificate Authority (CA). A self-signed certificate offers limited
protection and can be used before a CA-issued certificate has been obtained.
To install a self-signed certificate:
1. Go to System Options > Security > Certificates.
2. Click Create self-signed certificate and provide the requested information.
To create and install a CA-signed certificate:
1. Create a self-signed certificate as described above.
2. Go to System Options > Security > Certificates.
3. Click Create certificate signing request and provide the requested information.
4. Copy the PEM-formatted request and send to the CA of your choice.
5. When the signed certificate is returned, click Install certificate and upload the certificate.
Server/Client certificates can be installed as Certificate from signing request or as Certificate and private key. Select Certificate
and private key if the private key is to be upload as a separate file or if the certificate is in PKCS#12 format.
The Axis product is shipped with several preinstalled CA certificates. If required, additional CA certificates can be installed:
1. Go to System Options > Security > Certificates
The CA certificate is used to validate the identity of the authentication server. Enter the path to
the certificate directly, or locate the file using the Browse button. Then click Upload. To remove
a certificate, click Remove.
The client certificate and private key are used to authenticate the network device. They can be
uploaded as separate files or in one combined file (e.g. a PFX file or a PEM file). Use the Client
private key field if uploading one combined file. For each file, enter the path to the file, or locate the
file using the Browse button. Then click Upload. To remove a file, click Remove.
Select the EAPOL version (1 or 2) as used in your network switch.
Enter the user identity (maximum 16 characters) associated with your certificate.
Enter the password (maximum 16 characters) for the private key.
Check the box to enable the IEEE 802.1X protocol.
36

Advertisement

Table of Contents
loading

Table of Contents