06.05.2013 Views

User Guide for Cisco Secure Access Control Server - Stewing Home

User Guide for Cisco Secure Access Control Server - Stewing Home

User Guide for Cisco Secure Access Control Server - Stewing Home

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

ACS Certificate Setup<br />

9-36<br />

<strong>User</strong> <strong>Guide</strong> <strong>for</strong> <strong>Cisco</strong> <strong>Secure</strong> <strong>Access</strong> <strong>Control</strong> <strong>Server</strong> 4.2<br />

Chapter 9 System Configuration: Authentication and Certificates<br />

Tip If you do not select the Install generated certificate option, the certificate file and private key file<br />

are generated and saved when you click Submit in the next step; but are not installed in local<br />

machine storage.<br />

Step 12 ACS SE: In the FTP <strong>Server</strong> box, type the IP address or hostname of the FTP server where the certificate<br />

file and the corresponding private key file are to be transferred.<br />

Tip If you specify the hostname, DNS must be correctly working on your network.<br />

Step 13 ACS SE: In the Login box, type a valid username that ACS can use to access the FTP server.<br />

Step 14 ACS SE: In the Password box, type the password <strong>for</strong> the username that you specified in the Login box.<br />

Step 15 ACS SE: In the Remote FTP Directory box, type the relative path from the FTP server root directory<br />

to the directory to which you want ACS to transfer the certificate file and the corresponding private key<br />

file.<br />

Step 16 Click Submit.<br />

The specified certificate and private key files are generated and stored. If you selected the Install<br />

generated certificate option, the certificate becomes operational, only after you restart ACS services.<br />

Updating or Replacing an ACS Certificate<br />

Use this procedure to update or replace an existing ACS certificate that is out of date or out of order.<br />

Caution This procedure eliminates your existing ACS certificate and erases your CTL configuration.<br />

To install a new ACS certificate:<br />

Step 1 In the navigation bar, click System Configuration.<br />

Step 2 Click ACS Certificate Setup.<br />

ACS displays the Installed Certificate In<strong>for</strong>mation table on the ACS Certificate Setup page.<br />

Note If your ACS has not already been enrolled with a certificate, you do not see the Installed<br />

Certificate In<strong>for</strong>mation table. Rather, you see the Install new certificate table. If this is the case,<br />

proceed to Step 5.<br />

Step 3 Click Install New Certificate.<br />

A confirmation dialog box appears.<br />

Step 4 To confirm that you intend to enroll a new certificate, click OK.<br />

The existing ACS certificate is removed and your CTL configuration is erased.<br />

OL-14386-02

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!