9-6
Configuring Secure Socket Layer (SSL)
Configuring the Switch for SSL Operation
Configuring the Switch for SSL
Operation
1. Assigning a Local Login (Operator) and
Enabling (Manager) Password
At a minimum, HP recommends that you always assign at least a Manager
password to the switch. Otherwise, under some circumstances, anyone with
Telnet, web, or serial port access could modify the switch’s configuration.
Using the WebAgent To Configure Local Passwords.
You can configure
both the Operator and Manager password in the WebAgent. To access the
WebAgent, refer to the chapter titled “Using the HP WebAgent” in the
Man-
agement and Configuration Guide
for your switch.
2. Generating the Switch’s Server Host Certificate
You must generate a server certificate on the switch before enabling SSL. The
switch uses this server certificate, along with a dynamically generated session
key pair to negotiate an encryption method and session with a browser trying
to connect via SSL to the switch. (The session key pair mentioned above is
not visible on the switch. It is a temporary, internally generated pair used for
a particular switch/client session, and then discarded.)
SSL-Related CLI Commands in This Section
Page
web-management ssl
show config
show crypto host-cert
crypto key
generate cert [rsa] <512 | 768 |1024>
zeroize cert
crypto host-cert
generate self-signed [arg-list]
zeroize
Summary of Contents for E3800 Series
Page 2: ......
Page 3: ...HP Networking E3800 Switches Access Security Guide September 2011 KA 15 03 ...
Page 30: ...xxviii ...
Page 86: ...2 36 Configuring Username and Password Security Password Recovery ...
Page 186: ...4 72 Web and MAC Authentication Client Status ...
Page 364: ...8 32 Configuring Secure Shell SSH Messages Related to SSH Operation ...
Page 510: ...10 130 IPv4 Access Control Lists ACLs General ACL Operating Notes ...
Page 548: ...11 38 Configuring Advanced Threat Protection Using the Instrumentation Monitor ...
Page 572: ...12 24 Traffic Security Filters and Monitors Configuring Traffic Security Filters ...
Page 730: ...20 Index ...
Page 731: ......