Chapter 8 Establishing Cisco Secure ACS System Configuration
Cisco Secure ACS Certificate Setup
8-78
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
To edit the CTL, follow these steps:
Step 1
In the navigation bar, click System Configuration.
Step 2
Click Cisco Secure ACS Certificate Setup.
Step 3
Click Edit Certificate Trust List.
Result: The Edit the Certificate Trust List (CTL) table appears.
Warning
Adding a public CA, which you do not control, to your CTL, may reduce your
system security.
Step 4
To configure a CA on your CTL as trusted, select the corresponding check box.
Tip
You can select, or deselect, as many CAs as you want. Deselecting a CA’s
check box configures the CA as not trusted.
Step 5
Click Submit.
Result: Cisco Secure ACS configures the specified CA (or CAs) as trusted or not
trusted in accordance with selecting or deselecting check boxes.
Generating a Certificate Signing Request
You can use Cisco Secure ACS to generate a certificate signing request (CSR).
After you generate a CSR, you can submit it to a certificate authority (CA) to
obtain your certificate. You perform this procedure to generate the CSR for future
use with a certificate enrollment tool.
Note
If you already have a server certificate, you do not need to use this portion of the
ACS Certificate Setup page.