D-Link DKVM-IP1 manual Certificate Settings

Page 56

6.5.4Certificate

Figure 6-23. Certificate Settings

The DKVM-IP1 switch uses the Secure Socket Layer (SSL) protocol for any encrypted network traffic between itself and a connected client. During the connection establishment the DKVM-IP1 switch has to expose its identity to a client using a cryptographic certificate. Upon delivery, this certificate and the underlying secret key is the same for all DKVM-IP1 switch ever produced and certainly will not match the network configuration that will be applied to the DKVM-IP1 switch cards by its user. The certificate's underlying secret key is also used for securing the SSL handshake. Hence, this is a security risk (but far better than no encryption at all).

However, it is possible to generate and install a new certificate that is unique for a particular DKVM-IP1 switch card. In order to do that, the DKVM-IP1 switch is able to generate a new cryptographic key and the associated Certificate Signing Request (CSR) that needs to be certified by a certification authority (CA). A certification authority verifies that you are the person who you claim you are, and signs and issues a SSL certificate to you.

The following steps are necessary to create and install a SSL certificate for the DKVM-IP1 switch:

Create a SSL Certificate Signing Request using the panel shown in Figure 6-23. You need to fill out a number of fields that are explained below. Once this is done, click on the button “ Create ” which will initiate the Certificate Signing Request generation. The CSR can be downloaded to your administration machine with the “Download CSR” button (see Figure 6-24).

Send the saved CSR to a CA for certification. You will get the new certificate from the CA after a more or less complicated traditional authentication process (depending on the CA).

Upload the certificate to the DKVM-IP1 switch using the “ Upload ” button as shown in Figure 6-24.

53

Image 56
Contents Link DKVM-IP1 Port KVM Switch Over IP Manual Contents Menu Options Video modes InstallationDKVM-IP1 switch hardware installation Initial IP configuration Web interfaceRemote Console Top part of the Remote ConsoleWhen the server is up and running When the server is deadFeatures Package contentsTechnical specifications Model No DKVM-IP1 1port KVM Switch Over IPSystem requirement DescriptionUSB 2.0 Cable Cable diagrams PS/2 CableVGA Cable Step Connecting DKVM-IP1 switch to the host systemOperation Overview Connect the monitor to the DKVM-IP1 switch console side Option Ethernet connectionPage DKVM-IP1 switch Setup Tool Initial ConfigurationInitial configuration via Dhcp server Authentication Initial configuration via serial consoleIP auto configuration Keyboard, Mouse and Video configurationDKVM-IP1 switch keyboard settings IP addressRemote Mouse Settings Host system mouse settingsAuto mouse speed and mouse synchronization Fast SyncWindows XP Mouse Settings Single and Double Mouse ModeRecommended Mouse Settings Special Mouse DriverPrerequisites TelnetLogin into the DKVM-IP1 switch and logout Internet Explorer displaying the encryption key lengthNavigation MainLogout from the DKVM-IP1 switch Remote Console General descriptionMain Window Remote Console Control BarExclusive Access Remote Console Options MenuLocal Cursor ScalingMouse Handling Video Settings Remote Console Options MenuCursorSoft Keyboard 12. Soft KeyboardEncoding Local KeyboardHotkeys Remote Console Status Line 15. Encoding17. Status line transfer rate Remote KVM Console Telnet ConsoleHelp ClsQuit VersionUpload a Floppy Image Use Image on Windows Share SambaSelecting CD ROM Select Sharing to open the configuration dialog Creating an Image Floppy Images CD ROM/ISO ImagesDd if=/dev/cdrom of=/tmp/cdrom.image Driver Installation Drive redirection17. KVM Vision Viewer Setup step Create a New Device 17. Create a new DeviceDrive Redirection Settings 18. New DeviceOptions Change Password UsersSettings User Console14. User Console Settings Part 15. User Console Settings Part 17. Keyboard and Mouse Settings Keyboard/MousePage Video Network19. Network Settings Part 19. Network Settings Part Dynamic DNS 20. Dynamic DNSPage Security 22. Device Security23. Certificate Settings Certificate24. SSL Certificate Upload Serial Port 25. Serial PortPage Date And Time Event LogPage Page Device Status Board SummaryEven log Reset FunctionsUpdate Firmware Page Unit Reset 35 Unit ResetTroubleshooting Certificates CE CertificatePin Assignments Key Codes F12 Printscreen Scroll Lock Break Insert Home Delete Video Modes Rack mount kit installation diagram