ZyXEL WAC5302D-S User Guide - Page 161

Edit My Certificates, My Certificates, Return

Page 161 highlights

Chapter 16 Certificates Table 69 Configuration > Object > Certificate > My Certificates > Add (continued) LABEL DESCRIPTION Create a certification request and enroll for a certificate immediately online Select this to have the Zyxel Device generate a request for a certificate and apply to a certification authority for a certificate. You must have the certification authority's certificate already imported in the Trusted Certificates screen. Enrollment Protocol When you select this option, you must select the certification authority's enrollment protocol and the certification authority's certificate from the drop-down list boxes and enter the certification authority's server address. You also need to fill in the Reference Number and Key if the certification authority requires them. This field applies when you select Create a certification request and enroll for a certificate immediately online. Select the certification authority's enrollment protocol from the dropdown list box. Simple Certificate Enrollment Protocol (SCEP) is a TCP-based enrollment protocol that was developed by VeriSign and Cisco. CA Server Address Certificate Management Protocol (CMP) is a TCP-based enrollment protocol that was developed by the Public Key Infrastructure X.509 working group of the Internet Engineering Task Force (IETF) and is specified in RFC 2510. This field applies when you select Create a certification request and enroll for a certificate immediately online. Enter the IP address (or URL) of the certification authority server. CA Certificate For a URL, you can use up to 511 of the following characters. a-zA-Z0-9 This field applies when you select Create a certification request and enroll for a certificate immediately online. Select the certification authority's certificate from the CA Certificate drop-down list box. Request Authentication You must have the certification authority's certificate already imported in the Trusted Certificates screen. Click Trusted CAs to go to the Trusted Certificates screen where you can view (and manage) the Zyxel Device's list of certificates of trusted certification authorities. When you select Create a certification request and enroll for a certificate immediately online, the certification authority may want you to include a reference number and key to identify you when you send a certification request. Fill in both the Reference Number and the Key fields if your certification authority uses the CMP enrollment protocol. Just the Key field displays if your certification authority uses the SCEP enrollment protocol. For the reference number, use 0 to 99999999. OK Cancel For the key, use up to 31 of the following characters. a-zA-Z0-9 Click OK to begin certificate or certification request generation. Click Cancel to quit and return to the My Certificates screen. If you configured the Add My Certificates screen to have the Zyxel Device enroll a certificate and the certificate enrollment is not successful, you see a screen with a Return button that takes you back to the Add My Certificates screen. Click Return and check your information in the Add My Certificates screen. Make sure that the certification authority information is correct and that your Internet connection is working properly if you want the Zyxel Device to enroll a certificate online. 16.2.2 Edit My Certificates Click Configuration > Object > Certificate > My Certificates and then the Edit icon to open the My Certificate Edit screen. You can use this screen to view in-depth certificate information and change the certificate's name. NWA/WAC/WAX Series User's Guide 161

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305

Chapter 16 Certificates
NWA/WAC/WAX Series User’s Guide
161
If you configured the
Add
My Certificates
screen to have the Zyxel Device enroll a certificate and the
certificate enrollment is not successful, you see a screen with a
Return
button that takes you back to the
Add
My Certificates
screen. Click
Return
and check your information in the
Add
My Certificates
screen.
Make sure that the certification authority information is correct and that your Internet connection is
working properly if you want the Zyxel Device to enroll a certificate online.
16.2.2
Edit My Certificates
Click
Configuration > Object > Certificate > My Certificates
and then the
Edit
icon
to open the
My
Certificate Edit
screen. You can use this screen to view in-depth certificate information and change the
certificate’s name.
Create a certification
request and enroll for
a certificate
immediately online
Select this to have the Zyxel Device generate a request for a certificate and apply to a
certification authority for a certificate.
You must have the certification authority’s certificate already imported in the
Trusted
Certificates
screen.
When you select this option, you must select the certification authority’s enrollment
protocol and the certification authority’s certificate from the drop-down list boxes and
enter the certification authority’s server address. You also need to fill in the
Reference
Number
and
Key
if the certification authority requires them.
Enrollment Protocol
This field applies when you select
Create a certification request and enroll for a certificate
immediately online
. Select the certification authority’s enrollment protocol from the drop-
down list box.
Simple Certificate Enrollment Protocol (SCEP)
is a TCP-based enrollment protocol that was
developed by VeriSign and Cisco.
Certificate Management Protocol (CMP)
is a TCP-based enrollment protocol that was
developed by the Public Key Infrastructure X.509 working group of the Internet
Engineering Task Force (IETF) and is specified in RFC 2510.
CA Server Address
This field applies when you select
Create a certification request and enroll for a certificate
immediately online
. Enter the IP address (or URL) of the certification authority server.
For a URL, you can use up to 511 of the following characters. a-zA-Z0-9'()+,/:.=?;!*#@$_%-
CA Certificate
This field applies when you select
Create a certification request and enroll for a certificate
immediately online
. Select the certification authority’s certificate from the
CA Certificate
drop-down list box.
You must have the certification authority’s certificate already imported in the
Trusted
Certificates
screen. Click
Trusted CAs
to go to the
Trusted Certificates
screen where you
can view (and manage) the Zyxel Device's list of certificates of trusted certification
authorities.
Request
Authentication
When you select
Create a certification request and enroll for a certificate immediately
online
, the certification authority may want you to include a reference number and key to
identify you when you send a certification request.
Fill in both the
Reference Number
and the
Key
fields if your certification authority uses the
CMP enrollment protocol. Just the
Key
field displays if your certification authority uses the
SCEP enrollment protocol.
For the reference number, use 0 to 99999999.
For the key, use up to 31 of the following characters. a-zA-Z0-9;|`~!@#$%^&*()_+\{}':,./
<>=-
OK
Click
OK
to begin certificate or certification request generation.
Cancel
Click
Cancel
to quit and return to the
My Certificates
screen.
Table 69
Configuration > Object > Certificate > My Certificates > Add (continued)
LABEL
DESCRIPTION