Dell Powerconnect W-ClearPass Virtual Appliances W-ClearPass Guest 6.0 Deploym - Page 106

Specifying Certificate Properties, Configuring Provisioning Settings

Page 106 highlights

NOTE: The file should be a base-64 encoded (PEM format) PKCS#10 certificate signing request. Specifying Certificate Properties Select the type of certificate from the Certificate Type drop-down list. Choose from one of the following options: l TLS Client Certificate - Use this option when the certificate is to be issued to a client, such as a user or a user's device. n When this option is selected, the issued certificate's extended key usage property will contain a value of "Client Auth", indicating that the certificate may be used to identify a client. l TLS Server Certificate - Use this option when the certificate is to be issued to a network server, such as a Web server or as the EAP-TLS authentication server. n When this option is selected, the issued certificate's extended key usage property will contain a value of "Server Auth", indicating that the certificate may be used to identify a server. l Certificate Authority - Use this option when the certificate is for an subordinate certificate authority. n When this option is selected, the issued certificate will contain an extension identifying it as an intermediate certificate authority, and the extended key usage property will contain the three values "Client Auth", "Server Auth" and "OCSP Signing". Mark the Issue this certificate immediately check box to automatically issue the certificate. Click the Submit Certificate Signing Request button to save your changes. l If the "Issue this certificate immediately" check box is marked, the certificate will be issued immediately and will be displayed in the Certificate Management list view. l If the "Issue this certificate immediately" check box is not marked, the certificate request will be displayed in the Certificate Management list view. The certificate can then be issued or rejected at a later time. Configuring Provisioning Settings To configure basic device provisioning settings, go to Onboard > Provisioning Settings, or click the Provisioning Settings command link. The Device Provisioning Settings page opens. This page is used to configure the settings for ClearPass Onboard device provisioning, including: l The organization name displayed during device provisioning l Properties for the certificates issued to devices when they are provisioned l Which operating systems should be supported l Authorization properties - the number of devices that a user may provision The Device Provisioning form is organized in tabbed pages, with separate tabs for general, iOS & OS X, Legacy OS X, Windows, Android, and Onboard Client information. 106 | Specifying Certificate Properties Dell Networking W-ClearPass Guest 6.0 | Deployment Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320

106
| Specifying Certificate Properties
Dell Networking W-ClearPass Guest 6.0 | Deployment Guide
NOTE: The file should be a base-64 encoded (PEM format) PKCS#10 certificate signing request.
Specifying Certificate Properties
Select the type of certificate from the
Certificate Type
drop-down list. Choose from one of the following options:
l
TLS Client Certificate
– Use this option when the certificate is to be issued to a client, such as a user or a
user’s device.
n
When this option is selected, the issued certificate’s extended key usage property will contain a value of
“Client Auth”, indicating that the certificate may be used to identify a client.
l
TLS Server Certificate
– Use this option when the certificate is to be issued to a network server, such as a Web
server or as the EAP-TLS authentication server.
n
When this option is selected, the issued certificate’s extended key usage property will contain a value of
“Server Auth”, indicating that the certificate may be used to identify a server.
l
Certificate Authority
– Use this option when the certificate is for an subordinate certificate authority.
n
When this option is selected, the issued certificate will contain an extension identifying it as an intermediate
certificate authority, and the extended key usage property will contain the three values “Client Auth”, “Server
Auth” and “OCSP Signing”.
Mark the
Issue this certificate immediately
check box to automatically issue the certificate.
Click the
Submit Certificate Signing Request
button to save your changes.
l
If the “Issue this certificate immediately” check box is marked, the certificate will be issued immediately and will
be displayed in the Certificate Management list view.
l
If the “Issue this certificate immediately” check box is
not
marked, the certificate request will be displayed in
the Certificate Management list view. The certificate can then be issued or rejected at a later time.
Configuring Provisioning Settings
To configure basic device provisioning settings, go to
Onboard > Provisioning Settings
, or click the
Provisioning
Settings
command link. The Device Provisioning Settings page opens.
This page is used to configure the settings for ClearPass Onboard device provisioning, including:
l
The organization name displayed during device provisioning
l
Properties for the certificates issued to devices when they are provisioned
l
Which operating systems should be supported
l
Authorization properties – the number of devices that a user may provision
The Device Provisioning form is organized in tabbed pages, with separate tabs for general, iOS & OS X, Legacy OS
X, Windows, Android, and Onboard Client information.