DGS-3000 Series Layer 2 Managed Gigabit Ethernet Switch CLI Reference Guide
733
Chapter 75
Secure Sockets Layer (SSL)
Command List
download ssl certificate
{<ipaddr> certfilename <path_filename 64> keyfilename <path_filename
64>}
enable ssl
{ciphersuite {RSA_with_RC4_128_MD5 | RSA_with_3DES_EDE_CBC_SHA |
DHE_DSS_with_3DES_EDE_CBC_SHA | RSA_EXPORT_with_RC4_40_MD5}}
disable ssl
{ciphersuite {RSA_with_RC4_128_MD5 | RSA_with_3DES_EDE_CBC_SHA |
DHE_DSS_with_3DES_EDE_CBC_SHA | RSA_EXPORT_with_RC4_40_MD5}}
show ssl
{certificate}
show ssl cachetimeout
config ssl cachetimeout
<value 60-86400>
download ssl certificate
75-1
Description
This command is used to download the certificate to the device according to the certificate level.
The user can download the specified certificate to the device which must, according to desired key
exchange algorithm. For RSA key exchange, the user must download RSA type certificate and for
DHS_DSS is using the DSA certificate for key exchange.
Format
download ssl certificate {<ipaddr> certfilename <path_filename 64> keyfilename
<path_filename 64>}
Parameters
<ipaddr>
- (Optional) Enter the TFTP server IP address used for this configuration here.
certfilename
- (Optional) Specify the desired certificate file name.
<path_filename 64>
- Enter the certificate file path with respect to the TFTP server root path.
This can be up to 64 characters long.
keyfilename
- (Optional) Specify the private key file name which accompany with the certificate.
<path_filename 64>
- Enter the private key file path with respect to the TFTP server root
path. This can be up to 64 characters long.
Restrictions
Only Administrators, Operators and Power-Users can issue this command.
Example
To download certificate from TFTP server:
Summary of Contents for DGS-3000 series
Page 1: ......