Panasonic NN46110-600 User Manual

Page 105

Attention! The text in this document has been recognized automatically. To view the original document, you can use the "Original mode".

Advertising
background image

Chapter 3 Using certificates 95

configured on the System > Certificates: Generate Certificate Request
window.

5

If you use a distinguished name to identify the remote branch office site, you
can enter the

DN

as either a

relative distinguished name

or a

full

distinguished name

. The DN entered here must exactly match the DN in the

remote peer’s certificate.

Note:

Do not include the attribute type as part of your entries in the

Relative section. For example, for a name of CN=MyVPNRouter, your

entry is MyVPNRouter (without the CN attribute type).

6

The

relative distinguished name

has the following supported components:

Common Name—enter the common name with which the server is

associated

Org Unit—enter the organizational unit with which the server is
associated

Organization—enter the organization with which the server is associated

Locality—enter the locality in which the server resides

State/Province—enter the state or province in which the server resides

Country—enter the country in which the user resides

7

The

local identity

is the name of the VPN Router that you want to use to

identify itself when initiating or responding to a connection request. You can
use either a subject distinguished name (subject DN) or a subject alternative

name to uniquely identify this system. If you select a subject alternative name
from the VPN Router’s certificate, then that identity is used instead of the
VPN Router’s subject DN when communicating with peers.

Note:

The VPN Router’s server certificate has subject alternative names

only if the CA issued the certificate with the alternative names. For
example, with Entrust PKI, the VPN connector can issue certificates
with DNS names, IP addresses, or Email alternative names.

8

Click the list to view all

certificates

that are issued to the server. Server

certificates are configured on the System > Certificates: Generate Certificate

Request window.

Nortel VPN Router Security — Servers, Authentication, and Certificates

Advertising