Chapter 41 Certificates

The following table describes the labels in this screen.

Table 197 Configuration > Object > Certificate > My Certificates > Add

LABEL

DESCRIPTION

Name

Type a name to identify this certificate. You can use up to 31

 

alphanumeric and ;‘~!@#$%^&()_+[]{}’,.=- characters.

 

 

Subject

Use these fields to record information that identifies the owner of

Information

the certificate. You do not have to fill in every field, although you

 

must specify a Host IP Address, Host Domain Name, or E-Mail.

 

The certification authority may add fields (such as a serial number)

 

to the subject information when it issues a certificate. It is

 

recommended that each certificate have unique subject information.

 

Select a radio button to identify the certificate’s owner by IP

 

address, domain name or e-mail address. Type the IP address (in

 

dotted decimal notation), domain name or e-mail address in the

 

field provided. The domain name or e-mail address is for

 

identification purposes only and can be any string.

 

A domain name can be up to 255 characters. You can use

 

alphanumeric characters, the hyphen and periods.

 

An e-mail address can be up to 63 characters. You can use

 

alphanumeric characters, the hyphen, the @ symbol, periods and

 

the underscore.

 

 

Organizational Unit

Identify the organizational unit or department to which the

 

certificate owner belongs. You can use up to 31 characters. You can

 

use alphanumeric characters, the hyphen and the underscore.

 

 

Organization

Identify the company or group to which the certificate owner

 

belongs. You can use up to 31 characters. You can use alphanumeric

 

characters, the hyphen and the underscore.

 

 

Town (City)

Identify the town or city where the certificate owner is located. You

 

can use up to 31 characters. You can use alphanumeric characters,

 

the hyphen and the underscore.

 

 

State, (Province)

Identify the state or province where the certificate owner is located.

 

You can use up to 31 characters. You can use alphanumeric

 

characters, the hyphen and the underscore.

 

 

Country

Identify the nation where the certificate owner is located. You can

 

use up to 31 characters. You can use alphanumeric characters, the

 

hyphen and the underscore.

 

 

Key Type

Select RSA to use the Rivest, Shamir and Adleman public-key

 

algorithm.

 

Select DSA to use the Digital Signature Algorithm public-key

 

algorithm.

 

 

Key Length

Select a number from the drop-down list box to determine how

 

many bits the key should use (512 to 2048). The longer the key, the

 

more secure it is. A longer key also uses more PKI storage space.

 

 

Enrollment Options

These radio buttons deal with how and when the certificate is to be

 

generated.

 

 

Create a self-

Select this to have the ZyWALL generate the certificate and act as

signed certificate

the Certification Authority (CA) itself. This way you do not need to

 

apply to a certification authority for certificates.

 

 

640

 

ZyWALL USG 50 User’s Guide