
AG 5500
280
Quick Reference Guide
Setting Up the SSL Feature
This section describes how to set up the AG 5500’s SSL feature.
Prerequisites
z
The AG 5500 should support SSL feature. Please go to
“Displaying Your
Configuration Settings {Summary}” on page 144
and verify that the Licensed
Features include "AAA SSL Support".
z
You should be a business that is qualified to obtain an SSL secure server ID from
different Certificate Authorities (CAs), such as VeriSign. The Certificate Authority
sets this qualification criterion.
z
You will need to generate your own Private Key and Certificate Signing Request
(these instructions are provided below).
z
You must obtain your own Signed Public Key from the Certificate Authority. The
selected Certificate Authority should be commonly supported in the subscribers'
browser. We recommend that you use VeriSign (all instructions in this document are
based on obtaining a key from VeriSign). Please contact Nomadix Technical Support
if you want to use a different Certificate Authority.
For Nomadix technical support, go to
“Contact Information” on page 305
.
Obtain a Private Key File (cakey.pem)
To create a Private Key File, you must install OpenSSL on your Windows 9x or NT operating
system on a PC with Internet access.
Requirements for Certificate Signing Request (CSR) and Key Generation
z
Cygwin and OpenSSL application installed on Windows 9x or NT.
z
5 large random files residing on the workstation (large compressed log files
recommended by VeriSign). These files are put in as file1:file2:file3:file4:file5 in the
key generation command.
Downloading Cygwin
There are several sources for obtaining “Cygwin” to install OpenSSL. One popular source is:
http://sources.redhat.com/cygwin/.
Nomadix used Cygwin version 1.3.2 for generating this section of the User’s
Guide.
ag5500_userguide.book Page 280 Tuesday, June 5, 2007 7:31 PM
Summary of Contents for AG 5500
Page 1: ......
Page 6: ...This page intentionally left blank AG 5500 vi...
Page 40: ...This page intentionally left blank AG 5500 28 Introduction...
Page 46: ...AG 5500 34 Installing the AG 5500...
Page 68: ...This page intentionally left blank AG 5500 56 Installing the AG 5500...
Page 73: ...AG 5500 System Administration 61...
Page 106: ...AG 5500 94 System Administration IPSec Tunnel Security Policies...
Page 110: ...AG 5500 98 System Administration...
Page 115: ...AG 5500 System Administration 103...
Page 126: ...AG 5500 114 System Administration...
Page 174: ...AG 5500 162 System Administration...
Page 203: ...AG 5500 System Administration 191 The Internal Billing Options Setup screen appears...
Page 205: ...AG 5500 System Administration 193 Sample of Internal Billing Options XoverY Plan Setup Screen...
Page 210: ...AG 5500 198 System Administration...
Page 231: ...AG 5500 System Administration 219 4 Repeat Steps 1 3 for page 2 of 2 see following screen...
Page 234: ...AG 5500 222 System Administration 5 Repeat Steps 1 3 for page 3 of 3 see following screen...
Page 268: ...This page intentionally left blank AG 5500 256 The Subscriber Interface...
Page 299: ...AG 5500 Quick Reference Guide 287 Here is the output of cakey pem...
Page 301: ...AG 5500 Quick Reference Guide 289 Here is the output of server csr...
Page 316: ...This page intentionally left blank AG 5500 304 Troubleshooting...
Page 318: ...This page intentionally left blank AG 5500 306 Appendix A Technical Support...
Page 338: ...This page intentionally left blank AG 5500 326 Index...