Purpose
Command or Action
(Optional) Generates an RSA key pair. RSA key pairs are required
before you can obtain a certificate for the switch. RSA key pairs
crypto key generate rsa
Example:
Switch(config)#
crypto key generate rsa
Step 4
are generated automatically. You can use this command to
regenerate the keys, if needed.
Specifies a local configuration name for the CA trustpoint and enter
CA trustpoint configuration mode.
crypto ca trustpoint name
Example:
Switch(config)#
crypto ca trustpoint
Step 5
your_trustpoint
Specifies the URL to which the switch should send certificate
requests.
enrollment url url
Example:
Switch(ca-trustpoint)#
enrollment url
Step 6
http://your_server:80
(Optional) Configures the switch to obtain certificates from the
CA through an HTTP proxy server.
enrollment http-proxy host-name port-number
Example:
Switch(ca-trustpoint)#
enrollment
Step 7
•
For
host-name
, specify the proxy server used to get the CA.
•
For
port-number
, specify the port number used to access the
CA.
http-proxy your_host 49
Configures the switch to request a certificate revocation list (CRL)
to ensure that the certificate of the peer has not been revoked.
crl query url
Example:
Switch(ca-trustpoint)#
crl query
ldap://your_host:49
Step 8
(Optional) Specifies that the trustpoint should be used as the
primary (default) trustpoint for CA requests.
primary name
Example:
Switch(ca-trustpoint)#
primary
Step 9
•
For
name
, specify the trustpoint that you just configured.
your_trustpoint
Exits CA trustpoint configuration mode and return to global
configuration mode.
exit
Example:
Switch(ca-trustpoint)#
exit
Step 10
Consolidated Platform Configuration Guide, Cisco IOS Release 15.2(4)E (Catalyst 2960-X Switches)
1136
Information About Secure Socket Layer HTTP
Summary of Contents for Catalyst 2960 Series
Page 96: ......
Page 196: ......
Page 250: ......
Page 292: ......
Page 488: ......
Page 589: ...P A R T VI Cisco Flexible NetFlow Configuring NetFlow Lite page 509 ...
Page 590: ......
Page 619: ...P A R T VII QoS Configuring QoS page 539 Configuring Auto QoS page 645 ...
Page 620: ......
Page 750: ......
Page 1604: ......
Page 1740: ......
Page 2105: ...P A R T XII Configuring Cisco IOS IP SLAs Configuring Cisco IP SLAs page 2025 ...
Page 2106: ......
Page 2118: ......
Page 2164: ......