![D-Link DGS-3312SR Manual Download Page 181](http://html.mh-extra.com/html/d-link/dgs-3312sr/dgs-3312sr_manual_78038181.webp)
DGS-3312SR Stackable Gigabit Layer 3 Switch
168
Parameter
Description
Server IP
Enter the IP address of the TFTP server where the certificate files are located.
Certificate File Name
Enter the path and the filename of the certificate file to download. This file must have
a .der extension. (Ex. c:/cert.der)
Key File Name
Enter the path and the filename of the key file you wish to download. This file must
have a .der extension (Ex. c:/pkey.der)
Configuration
This window will allow the user to enable SSL on the Switch and implement any one or combination of listed ciphersuites
on the Switch. A ciphersuite is a security string that determines the exact cryptographic parameters, specific encryption
algorithms and key sizes to be used for an authentication session. The Switch possesses four possible ciphersuites for the
SSL function, which are all enabled by default. To utilize a particular ciphersuite, disable the unwanted ciphersuites,
leaving the desired one for authentication. When the SSL function has been enabled, the web will become disabled. To
manage the Switch through the web based management while utilizing the SSL function, the web browser must support
SSL encryption and the header of the URL must begin with https://. (Ex. https://10.90.90.90) Any other method will result
in an error and no access can be authorized for the web-based management.
To view the following window, click
Security > Secure Socket Layer (SSL) > Configuration
:
Figure 6- 3. SSL Configuration window
To set up the SSL function on the Switch, configure the following parameters and click
Apply
.
Parameter
Description
RSA with RC4 128
MD5
This ciphersuite combines the RSA key exchange, stream cipher RC4 encryption with
128-bit keys and the MD5 Hash Algorithm. Use the pull-down menu to enable or
disable this ciphersuite. This field is
Enabled
by default.
RSA with 3DES EDE
CBC SHA
This ciphersuite combines the RSA key exchange, CBC Block Cipher 3DES_EDE
encryption and the SHA Hash Algorithm. Use the pull-down menu to enable or disable
this ciphersuite. This field is
Enabled
by default.
DHE DSS with 3DES
EDE CBC SHA
This ciphersuite combines the DSA Diffie Hellman key exchange, CBC Block Cipher
3DES_EDE encryption and SHA Hash Algorithm. Use the pull-down menu to enable
or disable this ciphersuite. This field is
Enabled
by default.
RSA EXPORT with
RC4 40 MD5
This ciphersuite combines the RSA Export key exchange and stream cipher RC4
encryption with 40-bit keys. Use the pull-down menu to enable or disable this
ciphersuite. This field is
Enabled
by default.
Status
You can individually enable or disable these four ciphersuites above or use this Status
drop-down menu to globally turn encryption on or off without changing the ciphersuite
settings you have already made. The default is
Disabled
.