69-82
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter69 General VPN Setup
Mapping Certificates to IPsec or SSL VPN Connection Profiles
Does Not Contain—The distinguished name field must not include the value within it.
Valu e—Enter up to 255 characters to specify the object of the operator. For Extended Key Usage,
select one of the pre-defined values in the drop-down list, or you can enter OIDs for other
extensions. The pre-defined values include the following:
Modes
The following table shows the modes in which this feature is available:
Selection Key Usage Purpose OID String
clientauth Client Authentication 1.3.6.1.5.5.7.3.2
codesigning Code Signing 1.3.6.1.5.5.7.3.3
emailprotection Secure Email Protection 1.3.6.1.5.5.7.3.4
ocspsigning OCSP Signing 1.3.6.1.5.5.7.3.9
serverauth Server Authentication 1.3.6.1.5.5.7.3.1
timestamping Time Stamping 1.3.6.1.5.5.7.3.8
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——