Specifications

15-4 Cryptography Commands
crypto certificate
InstallsoneoftheRoamAboutswitch’sPKCS #7certificatesintothecertificateandkeystorage
areaontheRoamAbout.Thecertificate,whichisissuedandsignedbyacertificateauthority,
authenticatestheRoamAboutSwitcheithertoRASMorWebView,orto802.1Xsupplicants
(clients).
Syntax
crypto certificate {admin | eap | web} PEM-formatted certificate
Parameters
Defaults
None.
Mode
Enabled.
Usage
Tousethiscommand,youmustalreadyhavegeneratedacertificate requestwiththecrypto
generaterequestcommand,senttherequesttothecertificateauthority,andobtainedasigned
copyoftheRoamAboutcertificateasaPKCS #7objectfile.Thendothefollowing:
1. OpenthePKCS #7objectfilewithanASCII
texteditorsuchasNotepadorvi.
2. EnterthecryptocertificatecommandontheCLIcommandline.
3. WhenMSSprompts youforthePEMformattedcertificate,pastethePKCS #7objectfileonto
thecommandline.
TheRoamAboutSwitchverifiesthevalidityofthepublickeyassociatedwiththiscertificatebefore
installingit,
topreventamismatchbetweentheRoamAboutswitch’sprivatekeyandthepublic
keyintheinstalledcertificate.
admin Storesthecertificateauthority’sadministrativecertificate,which
authenticatestheRoamAbouttoRASMorWebView.
eap Storesthecertificateauthority’sExtensibleAuthenticationProtocol(EAP)
certificate,whichauthenticatestheRoamAboutto802.1Xsupplicants
(clients).
web Stores
thecertificateauthority’scertificate,whichauthenticatestheRASto
clientswhouseWebAuthentication
PEMformatted
certificate
ASCIItextrepresentationofthePKCS #7certifica te,consistingofupto
5120 characters,thatyouhaveobtainedfromthecertificateauthority.