It infrastructure rap/rac1000 – ADS-TEC RAP/RAC1000 User Manual User Manual

Page 177

Advertising
background image

IT Infrastructure RAP/RAC1000

© ads-tec GmbH • Raiffeisenstr.14 • 70771 Leinfelden-Echterdingen

177

For using the p12 file in a normal OpenVPN configuration, enter the following after the
below section:

# SSL/TLS parms.

# See the server config file for more
# description. It's best to use

# a separate .crt/.key file pair
# for each client. A single ca

# file can be used for all clients.

pkcs12 "…OpenVPN\\cert\\OpenVPN_Client1.p12"

All other data types described in the OVPN file can be ignored.

C

REATING A

CRL

(C

ERTIFICATE

R

EVOCATION

L

IST

)

XCA additionally offers a function for the creation of a CRL on the basis of its CA and
certificate chain.

A CRL is a list of all certificates including their respective status of validity. In this way it is

possible to easily withdraw individual certificates from the server.

It is a special file that was created in XCA and that can be uploaded onto the device like a

certificate.

Determine the validity period and the time for the next update. Your next update should

be as far in the future as possible, normally there is no other reason for creating a new
certificate than the loss of the old one.

Advertising