18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Configuring Certificate Management<br />

Note: Some CAs will not support the optional identity types specified in step 3<br />

through step 5.<br />

3. [Optional] In the E-Mail Address field, type the email address associated<br />

with this firewall certificate.<br />

4. [Optional] In the Domain Name field, type the domain name associated<br />

with this firewall certificate.<br />

5. [Optional] In the IP Address field, type the IP address associated with this<br />

firewall certificate.<br />

6. In the Submit to CA drop-down list, select the enrollment method to<br />

which the certificate will be submitted for signing. The valid options are:<br />

Self Signed—Indicates the new certificate will be signed by the<br />

firewall rather than by a CA.<br />

Manual PKCS10—Indicates the certificate enrollment request will<br />

be placed in a PKCS10 envelope and exported to the file<br />

designated in the Generated PKCS10 File field.<br />

The name <strong>of</strong> the CA to which the certificate is submitted for<br />

signing. The CA can be either private (one you own and manage)<br />

or it can be public (a trusted CA administered elsewhere).<br />

7. In the Signature Type field, select the encryption format that will be<br />

used when signing the certificate. Valid options are RSA or DSA.<br />

8. [Conditional] Depending on the method you select in the Submit to CA<br />

field, the Other Parameters area may contain additional fields, as<br />

described below:<br />

If you selected Manual PKCS10 in the Submit to CA field, the<br />

Generated PKCS10 File field appears. Specify the name and location<br />

<strong>of</strong> the file that will contain the signed certificate, or click Browse to<br />

browse the network directories for the location <strong>of</strong> the file you want<br />

to specify. This file contains a PKCS10 "envelope" that is used to<br />

send a certificate to a CA for signing.<br />

If you selected a method that uses SCEP, you will need to provide a<br />

password in the SCEP Password field that appears.<br />

9. [Conditional] In the Format field, select the appropriate format for your<br />

PKCS10 certificate request.<br />

10. Click Add to add the certificate to the Certificates list. To define<br />

additional certificates repeat step 1 through step 9.<br />

11. Click the Save icon.<br />

Configuring Virtual Private Networks 13-39

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!