7-4
Configuring Secure Socket Layer (SSL)
Terminology
■
Self-Signed Certificate:
A certificate not verified by a third-party
certificate authority (CA). Self-signed certificates provide a reduced
level of security compared to a CA-signed certificate.
■
CA-Signed Certificate:
A certificate verified by a third party certif-
icate authority (CA). Authenticity of CA-Signed certificates can be
verified by an audit trail leading to a trusted root certificate.
■
Root Certificate:
A trusted certificate used by certificate authorities
to sign certificates (CA-Signed Certificates) and used later on to verify
that authenticity of those signed certificates. Trusted certificates are
distributed as an integral part of most popular web clients. (see
browser documentation for which root certificates are pre-installed).
■
Manager Level:
Manager privileges on the switch.
■
Operator Level:
Operator privileges on the switch.
■
Local password or username:
A Manager-level or Operator-level
password configured in the switch.
■
SSL Enabled:
(1) A certificate key pair has been generated on the
switch (web interface or CLI command:
crypto key generate cert
[key size]
(2) A certificate been generated on the switch (web
interface or CLI command:
crypto host-cert generate self-signed
[arg-list]
) and (3) SSL is enabled (web interface or CLI command:
web-management ssl
). (You can generate a certificate without
enabling SSL, but you cannot enable SSL without first generating a
Certificate.
Содержание ProCurve 2510G Series
Страница 1: ...Access Security Guide www procurve com ProCurve Series 2510G Switches Y 11 XX ...
Страница 2: ......
Страница 3: ...ProCurve Series 2510G Switches Access Security Guide June 2008 ...
Страница 12: ...x ...
Страница 26: ...1 10 Getting Started Need Only a Quick Start ...
Страница 105: ...4 31 TACACS Authentication Configuring TACACS on the Switch ...
Страница 106: ...4 32 TACACS Authentication Configuring TACACS on the Switch ...
Страница 176: ...6 30 Configuring Secure Shell SSH Messages Related to SSH Operation ...
Страница 198: ...7 22 Configuring Secure Socket Layer SSL Common Errors in SSL Setup ...
Страница 296: ...9 40 Configuring and Monitoring Port Security Configuring Protected Ports ...
Страница 310: ...10 14 Using Authorized IP Managers Operating Notes ...
Страница 318: ...8 Index ...
Страница 319: ......