xStack
®
DGS-3400 Series Layer 2 Gigabit Ethernet Managed Switch CLI Manual
518
DGS-3450:admin# show ssl
Command: show ssl
SSL status Disabled
RSA_WITH_RC4_128_MD5 0x0004 Enabled
RSA_WITH_3DES_EDE_CBC_SHA 0x000A Enabled
DHE_DSS_WITH_3DES_EDE_CBC_SHA 0x0013 Enabled
RSA_EXPORT_WITH_RC4_40_MD5 0x0003 Enabled
DGS-3450:admin#
Example usage:
To view certificate file information on the Switch:
DGS-3450: admin#show ssl certificate
Command: show ssl certificate
DGS-3450:admin#
download ssl certificate
Purpose
Used to download a certificate file for the SSL function on the Switch.
Syntax
download ssl certificate <ipaddr> certfilename <path_filename 64> {keyfilename
<path_filename 64>}
Description
This command is used to download a certificate file for the SSL function on the Switch from
a TFTP server. The certificate file is a data record used for authenticating devices on the
network. It contains information on the owner, keys for authentication and digital signatures.
Both the server and the client must have consistent certificate files for optimal use of the
SSL function. The Switch only supports certificate files with .der file extensions.
Parameters
<ipaddr>
– Enter the IP address of the TFTP server.
certfilename <path_filename 64>
– Enter the path and the filename of the certificate file you
wish to download.
keyfilename <path_filename 64>
– Enter the path and the filename of the key exchange file
you wish to download.
Restrictions
Only Administrator and Operator-level users can issue this command.
Example usage:
To download a certificate file and key file to the Switch:
DGS-3450:admin# download ssl certificate 10.53.13.94 certfilename c:/cert.der keyfilename
c:/pkey.der
Command: download ssl certificate 10.53.13.94 certfilename c:/cert.der keyfilename
c:/pkey.der
Certificate loaded successfully.
DGS-3450:admin#
config ssl certificate chain
Purpose
Used to specify the certificate chain on the Switch.
Syntax
config ssl certificate chain [default | <cert_list>]