![](/images/backgrounds/285815/hp-4100gl-users-manual-549937122x1.png)
Configuring Secure Socket Layer (SSL)
Configuring the Switch for SSL Operation
To Generate or Erase the Switch’s Server Certificate with the
CLI
Because the host certificate is stored in flash instead of the
Syntax: crypto key generate cert [rsa] <512 768 1024>
Generates a key pair for use in the certificate.
crypto key zeroize cert
Erases the switch’s certificate key and disables SSL operation.
crypto
Generates a self signed host certificate for the switch. If a switch certificate already exists, replaces it with a new certificate. (See the Note, above.)
crypto
Note:
Note:
Erases the switch’s host certificate and disables SSL operation.
To generate a host certificate from the CLI:
i. Generate a certificate key pair. This is done with the crypto key generate cert. The default key size is 512.
If a certificate key pair is already present in the switch, it is not necessary to generate a new key pair when generating a new certificate. The existing key pair may be
ii.Generate a new
When generating a