User`s manual
264
DWS-1008 User’s Manual
D-Link Systems, Inc.
Managing Keys and Certicates
Key and Certicate Conguration Scenarios
The rst scenario shows how to generate self-signed certicates. The second scenario shows
how to install CA-signed certicates using PKCS #12 object les, and the third scenario
shows how to install CA-signed certicates using CSRs (PKCS #10 object les) and PKCS #7
object les.
Creating Self-Signed Certicates
To manage the security of communication with 802.1X users, create EAP public-private key
pairs and self-signed certicates. Follow these steps:
1. Set time and date parameters, if not already set.
2. Generate public-private key pairs:
DWS-1008# crypto generate key eap 1024
key pair generated
3. Generate self-signed certicates:
DWS-1008# crypto generate self-signed eap
Country Name: US
State Name: CA
Locality Name: San Francisco
Organizational Name: example
Organizational Unit: IT
Common Name: DWS-1008
Email Address: admin@example.com
Unstructured Name: DWS-1008 in wiring closet 4
Self-signed cert for eap is
-----BEGIN CERTIFICATE-----
MIICUzCCAbygAwIBAgICA+cwDQYJKoZIhvcNAQEEBQAwNjELMAkGA1UEBhMCVVMx
CzAJBgNVBAgTAkNBMRowGAYDVQQDFBF0ZWNocHVic0B0cnB6LmNvbTAeFw0wMzA0
...
Lm8wmVYLxP56MMX-