Keys and Certificates
242 IOLAN SDS/SCS/STS/MDC User’s Guide, Version 4.0

Keys and Certificates

When you are using SSH, SSL/TLS, LDAP, or HTTPS, you will need to install keys and/or
certificates or get server keys in order to make those options work properly. All certificates need to be
created and all keys need to be generated outside of the IOLAN, with the exception of the IOLAN
SSH Public keys, which already exist in the IOLAN. SSH keys must be generated using the
OpenSSH format.
Certificate Authorities (CAs) such as Verisign, COST, GTE CyberTrust, etc. can issue certificates. Or,
you can create a self-signed certificate using a utility such as OpenSSL.
To download or keys, a certificate, or a CA list or to upload the IOLAN public SSH key, select Tools,
Advanced, Key s and Certificates.
The following fields are available:
Key / Certificate Select the key or certificate that you want to download to the IOLAN or upload
the IOLAN SSH Public Key.
Data Options:
zUpload Server SSH Public Key, used for Console Management serial
ports set to SSH connections
zDownload SSH User Public Key, used for Console Management serial
ports set to SSH connections
zDownload SSH User Private Key, used for IOLAN Users on serial ports
set to the Terminal profile using SSH connections
zDownload SSH Host Public Key, used for IOLAN Users on serial ports
set to the Terminal profile using SSH connections
zDownload SSL/TLS Private Key, required if using HTTPS and/or
SSL/TLS
zDownload SSL/TLS Certificate, required if using HTTPS and/or
SSL/TLS
zDownload SSL/TLS CA, required if using LDAP with TLS, SSL/TLS,
and/or X.509 certificate authentication for an IPsec tunnel
zUpload IPsec RSA Public Key, must be installed on the remote VPN
gateway when the RSA Signature is the IPsec tunnel authentication
method
zDownload IPsec RSA Public Key, from the remote VPN gateway when
RSA Signature is the IPsec tunnel authentication method
File Name The file that you are going to download/u pload to/from the IOLAN via TFTP.