deXlan IP-KVM user manual SSL Certificate Upload

Page 61

Single port KVM over IP switch

delivery, this certificate and the underlying secret key is the same for all IP-KVM switch ever produced and certainly will not match the network configuration that will be applied to the IP-KVM switch cards by its user. The certificate's underlying secret key is also used for securing the SSL handshake. Hence, this is a security risk (but far better than no encryption at all).

However, it is possible to generate and install a new certificate that is unique for a particular IP-KVM switch card. In order to do that, the IP-KVM switch is able to generate a new cryptographic key and the associated Certificate Signing Request (CSR) that needs to be certified by a certification authority (CA). A certification authority verifies that you are the person who you claim you are, and signs and issues a SSL certificate to you.

The following steps are necessary to create and install a SSL certificate for the IP-KVM switch:

Create a SSL Certificate Signing Request using the panel shown in Figure 6-23 . You need to fill out a number of fields that are explained below. Once this is done, click on the button “ Create ” which will initiate the Certificate Signing Request generation. The CSR can be downloaded to your administration machine with the “ Download CSR ” button (see Figure 6-24).

Send the saved CSR to a CA for certification. You will get the new certificate from the CA after a more or less complicated traditional authentication process (depending on the CA).

Upload the certificate to the IP-KVM switch using the “ Upload ” button as shown in Figure 6-24 .

Figure 6-24. SSL Certificate Upload

After completing these three steps, the IP-KVM switch has its own certificate that is used for identifying the card to its clients.

Image 61
Contents Rev USER’S ManualTable of Contents Troubleshooting Certificates IP-KVM switch hardware installation InstallationInitial IP configuration Video modesRemote Console Web interfaceTop part of the Remote Console When the server is dead When the server is up and runningPackage contents FeaturesSingle port IP-KVM Switch Technical specifications Model NoSystem requirement Model No VGA Cable Cable diagrams PS/2 CableUSB 2.0 Cable AT to PS/2 keyboard adapter OptionalOperation Overview Connecting IP-KVM switch to the host systemStep Connect the monitor to the IP-KVM switch console side Option Connecting EthernetSingle port KVM over IP switch Initial configuration via Dhcp server Initial ConfigurationIP-KVM switch Setup Tool Initial configuration via serial console AuthenticationKeyboard, Mouse and Video configuration IP autoconfigurationIP-KVM switch keyboard settings IP addressHost system mouse settings Remote Mouse SettingsAuto mouse speed and mouse synchronization Fast SyncSingle and Double Mouse Mode Windows XP Mouse SettingsActive Desktop Telnet PrerequisitesInternet Explorer displaying the encryption key length Login into the IP-KVM switch and logoutMain NavigationRemote Console General description Logout from the IP-KVM switchRemote Console Main WindowRemote Console Control Bar Remote Console Control BarMonitor Only Exclusive AccessMouse Handling ScalingLocal Cursor Remote Console Options MenuCursor Video SettingsContrast BrightnessClock 12. Soft Keyboard Soft Keyboard13. Soft Keyboard Mapping 15. Status line Remote Console Status Line17. KVM Vision Viewer Setup step Remote mass storage control 5.5.1 Driver Installation17. Create a new Device Create a New Device18. New Device Drive Redirection Settings20. Drive Redirection dialog Menu Options Remote Control KVM ConsoleTelnet Console Single port KVM over IP switch Virtual Media Floppy Disk CD ROM Select Windows Share Select Sharing to open the configuration dialog Creating an Image Floppy Images CD ROM/ISO Images User Management Change Password13. Set User Users And GroupsUser Console KVM Settings15. User Console Settings Part Single port KVM over IP switch 16. Power Control Power ControlKeyboard/Mouse 17. Keyboard and Mouse SettingsVideo 18. Video SettingsNetwork Device SettingsSingle port KVM over IP switch 20. Dynamic DNS Dynamic DNSSingle port KVM over IP switch 22. Device Security SecuritySingle port KVM over IP switch Unblocking users Anti Brute Force SettingCertificate 24. SSL Certificate Upload Single port KVM over IP switch 25. Serial Port Serial PortSingle port KVM over IP switch 27. Date and Time Date And Time29. Event Log Event LogSingle port KVM over IP switch Device Information Reset FunctionsBoard Summary 32. Event Log List Update FirmwareSingle port KVM over IP switch 34. Unit Reset Unit ResetTroubleshooting CE Certificate CertificatesPin Assignments Single port PS2 KVM over IP Key Codes Table B.1 Key Names Video Modes