Netgear FVS336G FVS336G Reference Manual - Page 153

Managing your Certificate Revocation List (CRL), Data to supply to CA, Self Certificate Requests

Page 153 highlights

ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual 6. Copy the contents of the Data to supply to CA text box into a text file, including all of the data contained from "----BEGIN CERTIFICATE REQUEST---" to "---END CERTIFICATE REQUEST---". 7. Submit your certificate request to a CA: a. Connect to the website of the CA. b. Start the Self Certificate request procedure. c. When prompted for the requested data, copy the data from your saved text file (including "----BEGIN CERTIFICATE REQUEST---" and "---END CERTIFICATE REQUEST"). d. Submit the CA form. If no problems ensue, the certificate will be issued. 8. Store the certificate file from the CA on your computer. 9. Return to the Certificates screen and locate the Self Certificate Requests section. Figure 7-16 10. Select the checkbox next to the certificate request, then click Browse and locate the certificate file on your PC. 11. Click Upload. The certificate file will be uploaded to this device and will appear in the Active Self Certificates list. If you have not already uploaded the CA certificate, do so now, as described in "Select VPN > Certificates from the main menu. The Certificates screen displays. The top section of the Certificates screen displays the Trusted Certificates (CA Certificates)." on page 7-12. You should also periodically check your CA's Certificate Revocation List, as described in "Managing your Certificate Revocation List (CRL)" on page 7-15. Managing your Certificate Revocation List (CRL) A CRL (Certificate Revocation List) file shows certificates that have been revoked and are no longer valid. Each CA issues their own CRLs. It is important that you keep your CRLs up-to-date. You should obtain the CRL for each CA regularly. In the Certificates menu, you can view your currently-loaded CRLs and upload a new CRL. Managing Users, Authentication, and Certificates v1.0, March 2009 7-15

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241

ProSafe Dual WAN Gigabit Firewall with SSL & IPsec VPN FVS336G Reference Manual
Managing Users, Authentication, and Certificates
7-15
v1.0, March 2009
6.
Copy the contents of the
Data to supply to CA
text box into a text file, including all of the
data contained from “----BEGIN CERTIFICATE REQUEST---” to “---END CERTIFICATE
REQUEST---”.
7.
Submit your certificate request to a CA:
a.
Connect to the website of the CA.
b.
Start the Self Certificate request procedure.
c.
When prompted for the requested data, copy the data from your saved text file (including
“----BEGIN CERTIFICATE REQUEST---” and “---END CERTIFICATE REQUEST”).
d.
Submit the CA form. If no problems ensue, the certificate will be issued.
8.
Store the certificate file from the CA on your computer.
9.
Return to the Certificates screen and locate the
Self Certificate Requests
section.
10.
Select the checkbox next to the certificate request, then click
Browse
and locate the certificate
file on your PC.
11.
Click
Upload
. The certificate file will be uploaded to this device and will appear in the
Active
Self Certificates
list.
If you have not already uploaded the CA certificate, do so now, as described in
“Select VPN >
Certificates from the main menu. The Certificates screen displays. The top section of the
Certificates screen displays the Trusted Certificates (CA Certificates).” on page 7-12
. You should
also periodically check your CA’s Certificate Revocation List, as described in
“Managing your
Certificate Revocation List (CRL)” on page 7-15
.
Managing your Certificate Revocation List (CRL)
A CRL (Certificate Revocation List) file shows certificates that have been revoked and are no
longer valid. Each CA issues their own CRLs. It is important that you keep your CRLs up-to-date.
You should obtain the CRL for each CA regularly.
In the Certificates menu, you can view your currently-loaded CRLs and upload a new CRL.
Figure 7-16