05.08.2013 Views

InterScanTM Messaging Security Virtual Appliance - Online Help ...

InterScanTM Messaging Security Virtual Appliance - Online Help ...

InterScanTM Messaging Security Virtual Appliance - Online Help ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Configuring Transport Layer <strong>Security</strong> Settings<br />

Email Address []:Evgueni_Faddeenkov@trendmicro.com<br />

[root@imsva82b ~]#<br />

After the completion of this procedure, the /tmp/root_key.pem file contains the<br />

private key encrypted with the “Trend” password. The /tmp/root_req.pem file<br />

contains the self-signed certificate that must be distributed to all clients and servers.<br />

Both are stored in the PEM-format.<br />

WARNING! The Organization (O) field for the CA and key owners must be the same.<br />

After obtaining a CA private key and certificate:<br />

• Deploy the CA certificate on all servers.<br />

• Have all certificates issued in your organization signed by the CA.<br />

Creating the IMSVA Key and Certificate<br />

The IMSVA private key and certificate must be created to be used for secure<br />

communication.<br />

To create the IMSVA private key and certificate, complete the following:<br />

[root@imsva82b ~]# openssl genrsa -out /tmp/imsva_key.pem 1024<br />

Generating RSA private key, 1024 bit long modulus<br />

.....................++++++<br />

....++++++<br />

e is 65537 (0x10001)<br />

[root@imsva82b ~]# openssl req -new -key /tmp/imsva_key.pem -out<br />

/tmp/imsva_req.pem<br />

You are about to be asked to enter information that will be<br />

incorporated<br />

into your certificate request.<br />

What you are about to enter is what is called a Distinguished<br />

Name or a DN.<br />

There are quite a few fields but you can leave some blank<br />

11-15

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!