35-59
Cisco ASDM User Guide
OL-16647-01
Chapter 35 General
Mapping Certificates to IPSec or SSL VPN Connection Profiles
Show Details—Displays detailed information about a certificate that you select in the table.
Delete—Removes the selected certificate from the table. There is no confirmation or undo.
Modes
The following table shows the modes in which this feature is available:
Install Certificate
Use this window to install a new CA certificate. You can get the certificate in one of the following ways:
Install from a file by browsing to the certificate file.
Paste the previously acquired certificate text in PEM format into the box on this window.
Use SCEP—Specifies the use of the Simple Certificate Enrollment Protocol (SCEP) Add-on for
Certificate Services runs on the Windows Server 2003 family. It provides support for the SCEP
protocol, which allows Cisco routers and other intermediate network devices to obtain certificates.
SCEP URL: http://—Specifies the URL from which to download SCEP information.
Retry Period—Specifies the number of minutes that must elapse between SCEP queries.
Retry Count—Specifies the maximum number of retries allowed.
More Options—Opens the Configure Options for CA Certificate window.
Modes
The following table shows the modes in which this feature is available:
Configure Options for CA Certificate
Use this window to specify details about retrieving CA Certificates for this IPSec remote access
connection. The tabs on this window are: Revocation Check, CRL Retrieval Policy, CRL Retrieval
Method, OCSP Rules, and Advanced.

Revocation Check Tab

Use this tab to specify information about CA Certificate revocation checking.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——