Cisco Systems 6500 manual Include the full path in the pkcs12filename value, PKCS12 file

Page 20

Chapter 2 Commands for the Catalyst 6500 Series Switch WebVPN Module

crypto pki export pkcs12

 

If you do not specify the pkcs12_filename value, you will be prompted to accept the default filename

 

(the default filename is the trustpoint_label value) or enter the filename. For the ftp: or tftp: value,

 

include the full path in the pkcs12_filename value.

 

You will receive an error if you enter the pass phrase incorrectly.

 

If there is more than one level of CA, the root CA and all the subordinate CA certificates are exported

 

in the PKCS12 file.

 

 

Examples

This example shows how to export a PKCS12 file using SCP:

 

wwbvpn(config)# crypto ca export TP1 pkcs12 scp: sky is blue

 

Address or name of remote host []? 10.1.1.1

 

Destination username [ssl-proxy]? admin-1

 

Destination filename [TP1]? TP1.p12

 

Password:

 

Writing TP1.p12 Writing pkcs12 file to scp://admin-1@10.1.1.1/TP1.p12

 

Password:

 

!

 

CRYPTO_PKI:Exported PKCS12 file successfully.

 

wwbvpn(config)#

Catalyst 6500 Series Switch WebVPN Module Command Reference—Release 1.1

2-20

OL-7310-01

 

 

Image 20
Contents Commands for the Catalyst 6500 Series Switch WebVPN Module Defaults Command Modes Command HistoryClear webvpn nbns Release ModificationClear webvpn platform Webvpn# clear webvpn platform Clear webvpn session Clears the statistics for a specific contextUser name Specifies the user nameClear webvpn stats CifsMangle Port-forwardCrypto key export rsa pem TerminalUrl url 3desKey nametest-keys UsageGeneral Purpose Key Crypto key generate General-keysUsage-keys ExportableCrypto key generate rsa usage-keys This example shows how to generate special-usage RSA keysThis example shows how to generate general-purpose RSA keys Crypto key import rsa pem Release ModificationPEM-formatted RSA key to the WebVPN Services Module Crypto pki authenticate Crypto pki authenticate trustpoint-labelDefaults Command Modes Command History Usage Guidelines Crypto pki certificateCrypto pki crl request name Wwbvpnconfig# crypto pki crl requestCrypto pki crl request This example shows how to request a certificate Webvpnconfig# crypto pki enroll PROXY1Crypto pki enroll Crypto pki enroll trustpoint-labelCrypto pki export pem Related Commands crypto pki import pem Crypto pki export pkcs12 This example shows how to export a PKCS12 file using SCP Wwbvpnconfig# crypto ca export TP1 pkcs12 scp sky is blueInclude the full path in the pkcs12filename value PKCS12 fileCrypto pki import pem Related Commands crypto pki export pem Usage Guidelines ExamplesCrypto pki import pkcs12 This example shows how to import a PKCS12 file using SCP Users/admin-1/pkcs12/TP2.p12Crypto pki profile enrollment label Webvpnconfig# crypto pki profile enrollment testCrypto pki profile enrollment Crypto pki trustpoint Command Purpose and Guidelines Defaults Enrollment http-proxymode ra retry Period minutes-1Period minutes count count url url Count count-10Certificate map mapname command Password passwordMatch certificate mapname map override SkipVrf vrf Subject-name lineUsage ike ssl-client ssl-server Debug webvpn Event app next-hop tcp-Event debugging Trace module module- FDU traceEvents- Events Ca-pool- CA PoolCert- Certificate management This example shows how to turn on tunnel debugging Usage Guidelines Nbns-list Nbns-list name no nbns-list nameExit Master timeoutNbns-server ipaddr Filter tunnel ip-acl Policy groupBanner value string Functions file-access Timeout idleHide-url-bar Nbns-list nameWebvpnconfig# webvpn context cisco Webvpnconfig-webvpn-group#svc address-pool ciscotunlpoolDefault local-port Specifies the default local port valid values are from 1 toPort-forward Port-forward listname no port-forward listnameRelated Commands url-list Webvpn contextWebvpn# show web context tunnel Show webvpn contextShow webvpn context name Show webvpn dispatch Show webvpn dispatch algorithm member statsAlgorithm MemberSslvpn CLB Member Table Webvpn# show webvpn gateway s1 Admin Status up Show webvpn gatewayShow webvpn gateway name Webvpn# show webvpn gatewayShow webvpn install FileCsd StatusWebvpn# show web install file \webvpn\stc\version.txt Show webvpn nbns Show webvpn nbns context name allAll Show web nbns context allShow webvpn-platform buffers module all Show webvpn platform buffersShow webvpn-platform buffers module module Webvpn# show webvpn platform context tunnel Show webvpn platform contextShow webvpn platform context name module module OL-7310-01 Show webvpn platform crash-info Show webvpn platform crash-info brief detailsBrief DetailsNvram Version This Core Didnt Crash Show webvpn platform gateway Show webvpn platform gateway name debug module moduleDebug Module moduleVlan ID This command has no default settings Show webvpn platform mac addressShow webvpn platform mac address ModuleShow webvpn platform policy Show webvpn platform policy ssl tcp nameSsl TcpWebvpn# show webvpn platform version Show webvpn platform versionShow webvpn platform version Webvpn# show webvpn platform vlan Show webvpn platform vlanShow webvpn platform vlan vlan-id Related Commands webvpn policy ssl Show webvpn policyGroup name Context name TcpShow webvpn session Context nameUser name Webvpn# show webvpn session context c1Webvpn# show webvpn stats Show webvpn statsShow webvpn stats type Mangling statistics Relative urls 15705 Absolute urls 41850 DPD Page TCP VCs Active VCs Aborted Conns Webvpn# show web stats context tunnel DPD Snmp-server enable This example shows how to enable authentication traps This example shows how to enable Snmp informsThis example shows how to enable traps Command Modes WebVPN group context submode Command History Release ModificationSvc Dns-server primary secondaryCommand Purpose and Guidelines Default Rekey method new-tunnel ssl No rekey methodRekey time interval No rekey timeUrl-list Url-list listname no url-list listnameHeading text Url-text text url-value url/exchageRelated Commands webvpn context Aaa authentication domain domain-list Specifies AAA configuration parameters for contextDefault-group-policy default-policy-name Webvpn contextInservice Login-message stringNo login-message Password-prompt promptSsl authenticate verify all none Authenticate verify -Specifies the SSLPolicy group policy-name Policy ssl policy-nameColor Name Url-list listnameVrf-name vrf-name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Color Name Webvpnconfig-webvpn-context# url-list cisco 100 Webvpn gateway No policy ssl SecondaryNo policy tcp Context and enter the gateway submode Webvpnconfig# webvpn gateway commonWebvpnconfig-webvpn-gateway#ip address 172.21.65.71 port Webvpn policy ssl No session-cache enable Timeout handshake timeoutTimeout session timeout absolute HelpThis example shows how to enable session-cache This example shows how to disable session-cacheWwbvpnconfig# webvpn policy ssl sslpl1 Wwbvpnconfig-ssl-policy#cipher RSAWITH3DESEDECBCSHAWwbvpnconfig-ssl-policy#timeout session 30000 absolute This example shows how to print out a helpRelated Commands show webvpn stats Timeout syn is 75 seconds Timeout reassembly is 60 seconds Tos carryover is disabledDefault Exit Webvpn policy tcpDelayed-ack-threshold Delay-ack-timeoutNo timeout fin-wait timeout-in-seconds No timeout inactivity timeout-in-secondsNo timeout reassembly time Form of this command to return to the default settingNo tos carryover Server to client connection, the server connection must be111 112
Related manuals
Manual 20 pages 62.17 Kb Manual 160 pages 24.26 Kb Manual 262 pages 31.67 Kb