Authentication and User Management
14.13 Uploading Certificate
SCALANCE W1750D UI
Configuration Manual, 02/2018 , C79000-G8976-C451-02
239
7.
If you have selected Auth Server, Captive portal server, or RadSec as the type of
certificate, enter a passphrase in Passphrase and retype the passphrase. If the certificate
does not include a passphrase, there is no passphrase required.
8.
Click Browse and select the appropriate certificate file, and click Upload Certificate. The
Certificate Successfully Installed message is displayed.
Note
The AP database can have only one authentication server certificate and one captive
portal server certificate at any point in time.
Note
When a Captive Portal server certificate is uploaded using the SCALANCE W UI, the
default management certificate on the UI is also replaced by the Captive portal server
certificate.
Loading Certificates through SCALANCE W CLI
To upload a CA, server, or captive portal certificate:
(scalance)# copy tftp <ip-address> <filename> {cpserver cert <password> format
{p12|pem}| radsec {ca|cert <password>} format pem|system {1xca format {der|pem}|
1xcert <password> format pem}}
To download RadSec certificates:
(scalance)# download-cert radsec ftp://192.0.2.7 format pem [psk <psk>] (scalance)#
download-cert radsecca ftp://192.0.2.7 format pem
Removing Certificates
To clear a certificate:
(scalance)# clear-cert {ca|cp|radsec|radsecca|server}
Loading Certificates Through AirWave
You can manage certificates using AirWave. The AMP directly provisions the certificates and
performs basic certificate verification (such as certificate type, format, version, serial number,
and so on) before accepting the certificate and uploading to an AP network. The AMP
packages the text of the certificate into an HTTPS message and sends it to the VC. After the
VC receives this message, it draws the certificate content from the message, converts it to
the right format, and saves it on the RADIUS server.