Generating an rsa key pair, Retrieving the ca certificate – H3C Technologies H3C SecPath F1000-E User Manual

Page 51

Advertising
background image

41

Figure 35 Adding a PKI domain

3.

Add a PKI domain as shown in

Figure 35

.

a.

Enter 1 as the PKI domain name.

b.

Enter CA server as the CA identifier.

c.

Select en as the local entity.

d.

Select RA as the authority for certificate request.

e.

Enter http://10.1.2.2/certsrv/mscep/mscep.dll as the URL for certificate request.

4.

Click Apply.

5.

Click OK when the system displays "Fingerprint of the root certificate not specified. No root
certificate validation will occur. Continue?"

Generating an RSA key pair

1.

Select VPN > Certificate Management > Certificate from the navigation tree.

2.

Click Create Key.
The page for generating the RSA key pair appears.

3.

Enter 1024 in the Key Length field.

4.

Click Apply.

Figure 36 Generating an RSA key pair

Retrieving the CA certificate

1.

Select VPN > Certificate Management > Certificate from the navigation tree.

Advertising