Admin Guide

Table Of Contents
Managing an SSL certificate
Perform this procedure to manage an SSL certificate on the switch.
About this task
If a certificate is already present, you must confirm that it can be deleted before a new one is
created.
After you create a certificate, the system logs one of the following INFO alarms:
New default Server Certificate and Key are generated and installed
Current Server Certificate and Key are installed
The default certificate key length for a certificate generated on the switch is 2,048 bits.
Note:
The ssl certificate [validity-period-in-days <30-3650>] and ssl
certificate reset commands in this procedure do not require a system reboot.
Procedure
1. Enter Global Configuration mode:
enable
configure terminal
2. Create and install a new self-signed certificate:
ssl certificate [validity-period-in-days <30-3650>]
3. Install an existing certificate or create a new self-signed certificate with a one-year expiration:
ssl certificate reset
Note:
If a certificate is already present, this command installs that certificate. If a certificate is
not already present, this command creates and installs a new certificate.
4. Delete a certificate:
no ssl certificate
Note:
The certificate loaded in memory remains valid until you use the ssl reset command
or reboot the system.
Variable definitions
Use the data in the following table to use the ssl certificate command.
Secure Shell
October 2015 Administering Avaya VSP 7200 Series and 8000 Series 158
Comments on this document? infodev@avaya.com