Keys and Certificates

Keys and Certificates

When you are using SSH, SSL/TLS, LDAP, or HTTPS, you will need to install keys and/or certificates or get server keys in order to make those options work properly. All certificates need to be created and all keys need to be generated outside of the IOLAN, with the exception of the IOLAN SSH Public keys, which already exist in the IOLAN. SSH keys must be generated using the OpenSSH format.

Certificate Authorities (CAs) such as Verisign, COST, GTE CyberTrust, etc. can issue certificates. Or, you can create a self-signed certificate using a utility such as OpenSSL.

To download or keys, a certificate, or a CA list or to upload the IOLAN public SSH key, select Tools, Advanced, Keys and Certificates.

The following fields are available:

Key / Certificate Select the key or certificate that you want to download to the IOLAN or upload the IOLAN SSH Public Key.

Data Options:

zUpload Server SSH Public Key, used for Console Management serial ports set to SSH connections

zDownload SSH User Public Key, used for Console Management serial ports set to SSH connections

zDownload SSH User Private Key, used for IOLAN Users on serial ports set to the Terminal profile using SSH connections

zDownload SSH Host Public Key, used for IOLAN Users on serial ports set to the Terminal profile using SSH connections

zDownload SSL/TLS Private Key, required if using HTTPS and/or

SSL/TLS

zDownload SSL/TLS Certificate, required if using HTTPS and/or

SSL/TLS

zDownload SSL/TLS CA, required if using LDAP with TLS, SSL/TLS, and/or X.509 certificate authentication for an IPsec tunnel

zUpload IPsec RSA Public Key, must be installed on the remote VPN gateway when the RSA Signature is the IPsec tunnel authentication method

zDownload IPsec RSA Public Key, from the remote VPN gateway when RSA Signature is the IPsec tunnel authentication method

File Name

The file that you are going to download/upload to/from the IOLAN via TFTP.

232

IOLAN SDS/SCS/STS User’s Guide, Version 3.6

Page 232
Image 232
Perle Systems STS, SCS manual Keys and Certificates