Netgear GS748Tv5 Software Administration Manual - Page 190

Certificate Management, Certificate Download, SSL DH Strong Encryption Parameter PEM File

Page 190 highlights

GS716Tv3, GS724Tv4, and GS748Tv5 Smart Switches Certificate Management Use this screen to generate or delete certificates.  To generate an SSL certificate: 1. Select Security > Access > HTTPS > Certificate Management. From the Certificate Present field, a Yes or No status displays. 2. In the Certificate Management area, select Generate Certificates. 3. Click the Apply button. The switch begins generating an SSL certificate. The Certificate Generation Status field shows information about the progress.  To delete an SSL certificate: 1. Select Security > Access > HTTPS > Certificate Management. From the Certificate Present field, a Yes or No status displays. 2. In the Certificate Management area, select Delete Certificates. 3. Click the Apply button. Certificate Download For the web server on the switch to accept HTTPS connections from a management station, the web server needs a public key certificate. You can generate a certificate externally (for example, off-line) and download it to the switch. Before you download a file to the switch, the following conditions must be true: • The file to download from the TFTP server is on the server in the appropriate directory. • The file is in the correct format. • The switch has a path to the TFTP server.  To configure the certificate download settings for HTTPS sessions: 1. Select Security > Access > HTTPS > Certificate Download. 2. From the File Type list, select the type of SSL certificate to download, which can be one of the following: • SSL Trusted Root Certificate PEM File. SSL Trusted Root Certificate File (PEM Encoded). • SSL Server Certificate PEM File. SSL Server Certificate File (PEM Encoded). • SSL DH Weak Encryption Parameter PEM File. SSL Diffie-Hellman Weak Encryption Parameter File (PEM Encoded). • SSL DH Strong Encryption Parameter PEM File. SSL Diffie-Hellman Strong Encryption Parameter File (PEM Encoded). Managing Device Security 190

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290

Managing Device Security
190
GS716Tv3, GS724Tv4, and GS748Tv5 Smart Switches
Certificate Management
Use this screen to generate or delete certificates.
To generate an SSL certificate:
1.
Select
Security
>
Access > HTTPS
>
Certificate Management
.
From the Certificate Present field, a Yes or No status displays.
2.
In the Certificate Management area, select
Generate Certificates
.
3.
Click the
Apply
button.
The switch begins generating an SSL certificate. The Certificate Generation Status field
shows information about the progress.
To delete an SSL certificate:
1.
Select
Security
>
Access > HTTPS
>
Certificate Management
.
From the Certificate Present field, a Yes or No status displays.
2.
In the Certificate Management area, select
Delete Certificates
.
3.
Click the
Apply
button.
Certificate Download
For the web server on the switch to accept HTTPS connections from a management station,
the web server needs a public key certificate. You can generate a certificate externally (for
example, off-line) and download it to the switch.
Before you download a file to the switch, the following conditions must be true:
The file to download from the TFTP server is on the server in the appropriate directory.
The file is in the correct format.
The switch has a path to the TFTP server.
To configure the certificate download settings for HTTPS sessions:
1.
Select
Security
>
Access
>
HTTPS
>
Certificate Download
.
2.
From the File Type list, select the type of SSL certificate to download, which can be one of
the following:
SSL Trusted Root Certificate PEM File
. SSL Trusted Root Certificate File (PEM
Encoded).
SSL Server Certificate PEM File
. SSL Server Certificate File (PEM Encoded).
SSL DH Weak Encryption Parameter PEM File
. SSL Diffie-Hellman Weak
Encryption Parameter File (PEM Encoded).
SSL DH Strong Encryption Parameter PEM File
. SSL Diffie-Hellman Strong
Encryption Parameter File (PEM Encoded).