HP Client Bridge M111 Changing the certificate assigned to a service, About certificate warnings

Page 73

Working with the M111

Managing certificates

Changing the certificate assigned to a service

Select the service name to open the Certificate details page. For example, if you select Web management tool, you will see:

Under Authentication to the peer, select a new Local certificate and then select Save.

About certificate warnings

When you connect the management tool, certificate warnings occur because the default certificate installed on the M111 is not registered with a certificate authority. It is a self-signed certificate that is attached to the default IP address (192.168.1.1) for the M111.

To continue to work with the management tool without installing a certificate, select the option that allows you to continue to the Website.

To eliminate these warnings you can do one of the following:

Obtain a registered X.509 (SSL) certificate from a recognized certificate authority and install it on the M111. This is the best solution, since it ensures that your certificate can be validated by any web browser. A number of companies offer this service for a nominal charge. These include: Thawte, Verisign, and Entrust.

Become a private certificate authority (CA) and issue your own certificate: You can become your own CA. and create as many certificates as you require. However, since your CA will not be included in the internal list of trusted CAs maintained by most browsers, users will get a security alert until they add your CA to their browser.

3-43

Image 73
Contents ProCurve 5400zl Switches HP ProCurve M111 Client Bridge Page HP ProCurve M111 Client Bridge Publication Number Contents Working with the M111 Field descriptions To assign a management address Regulatory information Resetting to factory defaultsViii Introduction Products covered About this guideImportant terms ConventionsExample Description Commands and program listingsIntroducing the M111 Client Bridge Key featuresProfessional Installation Required Safety informationServicing Online documentation HP ProCurve Networking supportBefore contacting support Getting started Deploying the M111 Scenario 1 Connecting wired devices to a wireless networkOverview Configure your computer Configuration procedureConnect to the M111 Select Network DNS PasswordsConfigure a station profile Connect the wired computers to the M111  The printer is configured with a static IP address Configure MAC cloning options Connect the wired device to the M111 Scenario 3 Connecting a serial device to a wireless network Configure the serial connection Getting started Getting started Working with the M111 802.1X certificates Certificate stores Certificate usage Management tool About passwordsStarting the management tool Manager and Operator accounts Customizing management tool settingsPasswords Security Security policiesWeb server IP address configurationAuto-refresh To configure IP addressing Wireless range Radio configurationWireless mode To configure the radioRestrict channels to Fast roaming threshold Fast roaming delta threshold Antenna selectionFast scan channel delay Scan channel delayFast roaming threshold count Minimum SNR thresholdAdvanced wireless settings Using station profiles to establish a wireless linkTransmit power control RTS thresholdWorking with the M111 General To add or edit a station profileWireless protection Wireless securityKey source EAP methodWorking with the M111 Viewing APs in the neighborhood Quality of serviceEncryption type Ap1certificate or ap2certificateAccess category Configuring Quality of Service QoSField descriptions Priority mechanisms QoS settings in a station profile802.1p Very-high, high, normal, low priority Differentiated Services DiffServCreating IP QoS profiles DisabledTo define an IP QoS profile Upstream DiffServ taggingSettings Connecting serial devicesProfile name Protocol Start port/ End portTo connect a serial device Serial port connectorIdle timeout Transmit timeoutMode Remote IP addressData bits Drop wireless link when port 1 is connectedParity bit Stop bitsConnection time DNS configurationTx kbytes Rx kbytesDynamically assigned DNS servers DNS switch on server failureOverride dynamically assigned DNS servers ServerEnable the Redirect unsupported traffic to option DNS switch overHandling unsupported traffic To forward unsupported trafficIP forwarding Cloning the address of a wired deviceLimitations Enabling Ethernet MAC cloning Wireless access to the M111 when MAC cloning is activeManagement tool TCP port Setting up management traffic interceptionSnmp agent UDP port Select Management SnmpEnable the Wireless traffic filters option Using filters to restrict wireless trafficSnmp notifications UDP port Remote log UDP portTo assign a management address Assigning a management addressSnmp V1/v2c communities AttributesV3 users Notification receivers Managing certificatesPassword 802.1X Install TLS client certificateInstall 802.1X certificates802.1X Manage TLS client certificates Certificate stores802.1X Trusted CA certificates 802.1X Manage CA certificates Trusted CA certificate store Installing a new CA certificate CA certificate import formats END Certificate Certificate and private key storeSpecify the Pkcs #12 password Default installed private key/public key certificate chainsCertificate usage About certificate warnings Changing the certificate assigned to a serviceManual configuration file management Configuration file managementBackup configuration Restore configuration Reset configurationScheduled operations Software updates Performing a scheduled update Performing an immediate software updateSelect Install Enable Scheduled installWorking with the M111 Regulatory information Manufacturers FCC Declaration of Conformity Statement Countries of Operation & Conditions of Use GHz Operation Operation Using 5 GHz Channels in the European Community5470 Supported External AntennasIndoor or outdoor use 1000 124, 128, 132, 136 Antenna Band GHzDGT LPD Low Power Device Statement Resetting to factory defaults Using the management tool Using the Reset buttonHow it works Page Technology for better business outcomes