
Chapter 10 The Certificates Screens
OX253P User
’
s Guide
115
scheduled expiration is called a CRL (Certificate Revocation List). The OX253P can
check a peer
’
s certificate against a directory server
’
s list of revoked certificates.
The framework of servers, software, procedures and policies that handles keys is
called PKI (public-key infrastructure).
10.4.1.1 Advantages of Certificates
Certificates offer the following benefits.
•
The OX253P only has to store the certificates of the certification authorities that
you decide to trust, no matter how many devices you need to authenticate.
•
Key distribution is simple and very secure since you can freely distribute public
keys and you never need to transmit private keys.
10.4.1.2 Self-signed Certificates
You can have the OX253P act as a certification authority and sign its own
certificates.
10.4.1.3 Factory Default Certificate
The OX253P generates its own unique self-signed certificate when you first turn it
on. This certificate is referred to in the GUI as the factory default certificate.
10.4.1.4 Certificate File Formats
Any certificate that you want to import has to be in one of these file formats:
•
Binary X.509: This is an ITU-T recommendation that defines the formats for
X.509 certificates.
•
PEM (Base-64) encoded X.509: This Privacy Enhanced Mail format uses
lowercase letters, uppercase letters and numerals to convert a binary X.509
certificate into a printable form.
•
Binary PKCS#7: This is a standard that defines the general syntax for data
(including digital signatures) that may be encrypted. A PKCS #7 file is used to
transfer a public key certificate. The private key is not included. The OX253P
currently allows the importation of a PKS#7 file that contains a single
certificate.
•
PEM (Base-64) encoded PKCS#7: This Privacy Enhanced Mail (PEM) format uses
lowercase letters, uppercase letters and numerals to convert a binary PKCS#7
certificate into a printable form.
Note: Be careful to not convert a binary file to text during the transfer process. It is
easy for this to occur since many programs use text files by default.
Summary of Contents for OX253P
Page 9: ...Contents Overview OX253P User s Guide 10 ...
Page 16: ...17 PART I User s Guide ...
Page 17: ...18 ...
Page 21: ...Chapter 1 Getting Started OX253P User s Guide 22 ...
Page 27: ...Chapter 2 Introducing the Web Configurator OX253P User s Guide 28 ...
Page 44: ...45 PART II Technical Reference ...
Page 45: ...46 ...
Page 85: ...Chapter 8 The NAT Configuration Screens OX253P User s Guide 86 ...
Page 117: ...Chapter 10 The Certificates Screens OX253P User s Guide 118 ...
Page 127: ...Chapter 11 The Firewall Screens OX253P User s Guide 128 ...
Page 171: ...Chapter 16 The Status Screen OX253P User s Guide 172 ...
Page 179: ...Chapter 17 Troubleshooting OX253P User s Guide 180 ...
Page 183: ...Chapter 18 Product Specifications OX253P User s Guide 184 ...
Page 215: ...Appendix B Setting Up Your Computer s IP Address OX253P User s Guide 216 ...
Page 227: ...Appendix C Pop up Windows JavaScripts and Java Permissions OX253P User s Guide 228 ...
Page 278: ...Index OX253P User s Guide 279 ...
Page 279: ...Index OX253P User s Guide 280 ...