CA Identifier:
The Certification Authority issuer identifier (if SCEP server requires it).
The CA Identifier is any string that is understood by the SCEP server
(e.g. a domain name).
Poll interval:
The polling interval in seconds for a certificate request.
Request timeout:
The max. polling time in seconds for a certificate request.
ID type
It can be IP, Email or DNS.
Password
The password for the scep server.
When enrolling certificates, the CA certificate will be initially fetched from the specified SCEP URL using
the getca operation. It will be shown on the configuration page and it has to be verified that it belongs
to the correct authority. Otherwise, the CA must be rejected. This part is essential when using SCEP
as it builds up the chain of trust. If a certificate enrollment request times out, it is possible to re-trigger
the interrupted enrollment request and it will be resumed using the previously generated key. In case
a request has been rejected, you are required to erase the certificate first and then start the enrollment
process all over again.
Authorities
For SSL client connections (as used by SDK functions or when downloading configuration/software
images) you might upload a list of CA certificates which are considered trusted. To obtain the CA cer-
tificate from a particular site with Mozilla Firefox, the following steps will be required:
• Point the browser to the relevant HTTPS website
• Click the padlock in the address bar
• Click the More Information and the View Certificate button
• Select the Details tab and press the Export button
• Choose a path for the file (e.g. website.pem)
M!DGE2 GPRS/UMTS/HSPA+/LTE router – © RACOM s.r.o.
156
Web Configuration
Summary of Contents for M!DGE2
Page 2: ......
Page 188: ...188 ...