DGS-3024 Gigabit Ethernet Switch Manual
To download certificates, set the following parameters and click
Apply.
Parameter
Description
Server IP
Enter the IP address of the TFTP server where the certificate files are located.
Certificate File Name
Enter the path and the filename of the certificate file to download. This file must have a .der
extension. (Ex. c:/cert.der)
Key File Name
Enter the path and the filename of the key file to download. This file must have a .der
extension (Ex. c:/pkey.der)
Click
Apply
to implement changes made.
Configuration
This window will allow the user to enable SSL on the Switch and implement any one or combination of listed ciphersuites on the
Switch. A
ciphersuite
is a security string that determines the exact cryptographic parameters, specific encryption algorithms and
key sizes to be used for an authentication session. The Switch possesses four possible ciphersuites for the SSL function, which are
all enabled by default. To utilize a particular ciphersuite, disable the unwanted ciphersuites, leaving the desired one for
authentication.
When the SSL function has been enabled, the web will become disabled. To manage the Switch through the web-based
management while utilizing the SSL function, the web browser must support SSL encryption and the header of the URL must
begin with https://. (Ex. https://10.90.90.90) Any other method will result in an error and no access can be authorized for the web-
based management.
To view the following window, click
Security > Secure Socket Layer (SSL) > Configuration
:
Figure 8- 3. SSL Configuration window
To set up the SSL function on the Switch, configure the following parameters and click
Apply
.
Parameter
Description
Status
Use the pull-down menu to enable or disable the SSL status on the Switch. The default is
Disabled
.
RSA with RC4 128
MD5
This ciphersuite combines the RSA key exchange, stream cipher RC4 encryption with 128-
bit keys and the MD5 Hash Algorithm. Use the pull-down menu to enable or disable this
ciphersuite. This field is
Enabled
by default.
RSA with 3DES EDE
CBC SHA
This ciphersuite combines the RSA key exchange, CBC Block Cipher 3DES_EDE encryption
and the SHA Hash Algorithm. Use the pull-down menu to enable or disable this ciphersuite.
This field is
Enabled
by default.
89
Содержание DGS-3024
Страница 1: ...D Link DGS 3024 Managed 24 Port Gigabit Ethernet Switch Manual ...
Страница 36: ...DGS 3024 Gigabit Ethernet Switch Manual 22 ...
Страница 188: ......
Страница 205: ...International Offices ...
Страница 208: ......