to verify authorization for certificate use, and is verified when downloading the
certificate to the switch.
Web
– Click Security, HTTPS Settings. Fill in the TFTP server, certificate an d p riva te
file name details, then click Copy Certificate.
Figure 6-4 HTTPS Settings

6-7

Configuring HTTPS

Replacing the Default Secure-site Certificate
When you log onto the web interface using HTTPS (for secure access), a Secure
Sockets Layer (SSL) certificate appears for the sw itch. By def ault, the ce rt ificat e that
Netscape and Internet Explorer display will be associat ed with a warnin g that th e
site is not recognized as a secure site. This is because the ce rtific ate has not been
signed by an approved certification authority. If you want this wa rnin g to b e rep la ced
by a message confirming that the connectio n to the swit ch is secu re, you m ust
obtain a unique certificate and a private key and password from a recognized
certification authority.
Note:
For maximum security, we recommend you obtain a unique Secure Sockets Layer
certificate at the earliest opportunity. This is because the default certificate for the
switch is not unique to the hardware you have purchased.
When you have obtained these, place them on your TFTP server and transfer them
to the switch to replace the default (unrecognized) certificate with an authorized one.
Command Attributes
6
TFTP Server IP Address
certificate file. – IP address of TFTP server which contains the
Source Certificate File Name
– Name of certificate file stored on the TFTP server.
Source Private File Name
– Name of private key file stored on the TFTP server.
Private Password
– Password stored in the private key file. This password is used