Configuring Secure Socket Layer (SSL)
General Operating Rules and Notes
Note:
Note:
Syntax: crypto key generate cert [rsa] < 512 768 1024 >
Generates a key pair for use in the certificate.
crypto key zeroize cert
Erases the switch’s certificate key and disables SSL opera- tion.
crypto
Generates a self signed host certificate for the switch. If a switch certificate already exists, replaces it with a new certificate. (See the Note on page
crypto
Erases the switch’s host certificate and disables SSL opera- tion.
To generate a host certificate from the CLI:
i.Generate a certificate key pair. This is done with the crypto key generate cert command. The default key size is 512.
If a certificate key pair is already present in the switch, it is not necessary to generate a new key pair when generating a new certificate. The existing key pair may be
ii.Generate a new
When generating a
Comments on Certificate Fields.
There are a number arguments used in the generation of a server certificate. table