
5-54
Configuring the RADIUS Server—Without Identity Driven Manager
Manage Digital Certificates for RADIUS
Convert from DER format to PEM format with this command:
For example, enter:
ProCurve NAC 800:/etc/raddb/certs# openssl x509 -in
mycertificate.der -inform DER -out mycertificate.pem
-outform PEM
Convert from PFX format with this command:
6.
Alter the
/etc/raddb/eap.conf
file to specify the new certificate. (See
Appendix B, “Appendix B: Linux Commands” for vi commands.)
N o t e
You can skip this step if the new server certificate and private key are in
the same file, which is named
cert-srv.pem
,
and
if the private key is
not
protected with a password.
a.
Enter this command:
ProCurve NAC 800:/#
vi /etc/raddb/eap.conf
b.
Use the arrow keys or other vi commands to reach the “tls” section
of the configuration file. (See Figure 5-21).
N o t e
The NAC 800 uses the “tls” configuration to authenticate itself for TLS,
PEAP, and TTLS.
Syntax:
openssl x509 -in <
certificate filename
> -inform DER -out <
certificate file-
name
> -outform PEM
For
<
certificate_filename
>
,
enter the name for the certificate
that you chose in step 2-c on page 5-53. You should change the
filename extension to reflect the changed format.
Syntax:
openssl pkcs12 -in <
certificate filename
>.pfx -out
<
certificate_filename
>.pem
For
<
certificate_filename
>
,
enter the name for the certificate
that you chose in step 2-c on page 5-53. You should change the
filename extension to reflect the changed format.
Содержание 800
Страница 1: ...Configuration Guide www procurve com ProCurve Network Access Controller 800 ...
Страница 2: ......
Страница 3: ...ProCurve Network Access Controller 800 Configuration Guide April 2008 1 0 30398 ...
Страница 74: ...1 62 Overview of the ProCurve NAC 800 Deployment Methods ...
Страница 145: ...3 17 Initial Setup of the ProCurve NAC 800 System Settings Figure 3 9 Home System Configuration Management Server ...
Страница 155: ...3 27 Initial Setup of the ProCurve NAC 800 System Settings ...
Страница 194: ...3 66 Initial Setup of the ProCurve NAC 800 Digital Certificates ...
Страница 328: ...5 64 Configuring the RADIUS Server Without Identity Driven Manager Manage Digital Certificates for RADIUS ...
Страница 336: ...6 8 Disabling Endpoint Integrity Testing Overview ...
Страница 354: ...7 18 Redundancy and Backup for RADIUS Services Back Up Your NAC 800 Configuration ...
Страница 380: ...A 26 Appendix A Glossary ...
Страница 394: ...B 14 Appendix B Linux Commands Service Commands ...
Страница 405: ......
Страница 406: ... Copyright 2007 2008 Hewlett Packard Development Company L P April 2008 Manual Part Number 5991 8618 ...