Configuring HTTPS 12

obtain a unique certificate and a private key and password from a recognized certification authority.

Note: For maximum security, we recommend you obtain a unique Secure Sockets Layer certificate at the earliest opportunity. This is because the default certificate for the switch is not unique to the hardware you have purchased.

When you have obtained a unique certificate file and a private key file, place them on your TFTP server and use either the web interface or the CLI to download them to the switch using the provided private key password.

Note: The switch must be reset for the new certificate to be activated.

Command Attributes

TFTP Server IP Address – The IP address of a TFTP server.

Source Certificate File Name – The file name of the unique certificate file as provided by the recognized certification authority.

Source Private File Name – The file name of the private key file as provided by the recognized certification authority.

Private Password – The private key assword as provided by the recognized certification authority.

Web – Click Security, HTTPS Settings. Specify the IP address of the TFTP server, the certificate and priate key file names, and the private key password. Click Copy Certificate.

Figure 12-4 Copy HTTPS Certificate

CLI – Use the following command to replace the default (unrecognized) HTTPS certificate with an authorized one:

Console#copy tftp https-certificate

35-2

TFTP server ip

address: <server ip-address>

 

Source

certificate file name: <certificate file name>

 

Source

private

file name: <private key file name>

 

Private password: <password for private key>

12-7

Page 125
Image 125
Accton Technology 24/48-Port, ES4548D, ES4524D manual Copy Https Certificate, Address server ip-address