User's Guide

Table Of Contents
Configuring the HiPath Wireless Controller
hwc_startup.fm
Configuring the HiPath Wireless Controller for the first time
9034530-02, March 2010
72 HiPath Wireless Controller, Access Points and Convergence Software V7.11, User Guide
Certificate format
The HiPath Wireless Controller supports the PKCS#12 certificate format. The
PKCS#12 certificate (.pfx) file contains both a certificate and the corresponding
private key.
Certificate monitoring
The HiPath Wireless Controller monitors the expiration date of installed
certificates. The HiPath Wireless Controller generates an entry in the events
information log as the certificate expiry date approaches, based on the following
schedule: 15, 8, 4, 2, and 1 day prior to expiration. The log messages cease when
the certificate expires. For more information, see the HiPath Wireless Controller,
Access Points and Convergence Software Maintenance Guide.
Upgrades and migrations
Installed certificates will be backed up and restored with the HiPath Wireless
Controller configuration data. Installed certificates will also be migrated during an
upgrade and during a migration.
Prerequisite for installing a certificate
You can chose your preferred CA to generate the PKCS#12 file. The HiPath
Wireless Controller will accept the PKCS#12 file as long as the format of the
private key and certificate are valid.
When generating the PKCS#12 certificate file, you must ensure that the interface
identified in the certificate corresponds to the HiPath Wireless Controller’s
interface for which the certificate is being installed.
Certificate Common Name
In order to avoid getting security warnings, the common name of the certificate
should match the interface IP (port IP or Topology gateway IP) that the WLAN
service uses.
HiPath Wireless Controller ports (pcX, esaX, and eth0) – Physical
interface IP address
Internal Captive Portal – VNS gateway IP address.
3.4.8.1 Installing a certificate for a HiPath Wireless Controller
interface
To install a certificate for a HiPath Wireless Controller data interface:
1. From the main menu, click Wireless Controller Configuration. The
Wireless Controller Configuration screen is displayed.
2. In the left pane, click Topology. The Topologies tab is displayed.
3. Click the Certificates tab.