Cryptography Commands 481

mzerMClaweVQQTTooewi\wpoer0QWNFNkj90044mbdrl1277SWQ8G7DiwYUtrqoQplKJvxz

.....

Lm8wmVYxP56M;CUAm908C2foYgOY40=

-----END CERTIFICATE-----

See Also show crypto ca-certificate on page 479

crypto certificate

Installs one of the WSS’s PKCS #7 certificates into the certificate and key storage area on the WSS. The certificate, which is issued and signed by a certificate authority, authenticates the WSS either to WLAN Management Software or Web View, or to 802.1X supplicants (clients).

Syntax crypto certificate {admin eap web} PEM-formatted certificate

admin

 

Stores the certificate authority’s administrative certificate, which

 

 

authenticates the WSS to WLAN Management Software or Web View.

eap

 

Stores the certificate authority’s Extensible Authentication Protocol

 

 

(EAP) certificate, which authenticates the WSS to 802.1X supplicants

 

 

(clients).

web

 

Stores the certificate authority’s Web-based AAA certificate, which

 

 

authenticates the WSS to clients who use Web-based AAA.

PEM-formatted

ASCII text representation of the PKCS #7 certificate, consisting of up to

certificate

 

5120 characters, that you have obtained from the certificate authority.

Defaults

None.

 

Access

Enabled.

 

History

 

 

Version 4.1

webaaa option renamed to web

Usage To use this command, you must already have generated a certificate request with the crypto generate request command, sent the request to the certificate authority, and obtained a signed copy of the WSS certificate as a PKCS #7 object file. Then do the following:

1Open the PKCS #7 object file with an ASCII text editor such as Notepad or vi.

2Enter the crypto certificate command on the CLI command line.

3When WSS Software prompts you for the PEM-formatted certificate, paste the PKCS #7 object file onto the command line.

The WSS verifies the validity of the public key associated with this certificate before installing it, to prevent a mismatch between the WSS’s private key and the public key in the installed certificate.

Examples The following command installs a certificate:

WSS# crypto certificate admin

Enter PEM-encoded certificate

Nortel WLAN—Security Switch 2300 Series Command Line Reference

Page 481
Image 481
Nortel Networks 2300 Series Crypto certificate, See Also show crypto ca-certificate on, WSS# crypto certificate admin