|
|
1 |
Choose Administration→Security→NE PKI Authentication→Site Public Key Infrastructure from the NFM-P main menu. The Select Site form opens.
|
2 |
Choose a managed NE and click OK. The Site Security Public Key Infrastructure (Edit) form opens.
|
3 |
Configure the required parameters.
|
4 |
Click Apply to save the changes.
|
5 |
Perform the following steps to generate a PKI keypair that is stored in a file on an NE compact flash drive.
-
Choose Admin Certificate→Generate Keypair from the More Actions button menu. The Admin Certificate Generate Keypair form opens.
-
Configure the required parameters.
-
Click Execute. The keypair is generated and stored.
-
Close the form.
|
6 |
Perform the following steps to generate local PKCS#10 certificate request on a local compact flash drive.
-
Choose Admin Certificate→Generate Local Certificate Request from the More Actions button menu. The Admin Certificate Generate Local Certificate Request form opens.
-
Configure the required parameters.
-
Click Execute. The local request is generated.
-
Close the form.
|
7 |
If you want the certificate signed by a CA, FTP the request file to the CA and use the CA-signed certificate in the following steps.
|
8 |
Perform the following steps to convert the certificate file to the required format for the NE.
-
Choose Admin Certificate→Import File from the More Actions button menu. The Admin Certificate Import File form opens.
-
Configure the required parameters.
-
Click Execute. The file is imported.
-
Close the form.
|
9 |
To convert a certificate, keypair, or CRL file on the NE to another format, perform the following steps.
-
Choose Admin Certificate→Export File from the More Actions button menu. The Admin Certificate Export File form opens.
-
Configure the required parameters.
-
Click Execute. The file is exported.
-
Close the form.
|
10 |
To display the content of a certificate, keypair, or CRL file in plain text, perform the following steps.
-
Choose Admin Certificate→Display File from the More Actions button menu. The Admin Certificate Display File form opens.
-
Configure the required parameters.
Note: If you are displaying key file content, only the Key Size and Key Type are displayed.
Note: You must configure the Password parameter if the file uses PKCS#12 encryption.
-
Click Execute. The file content is displayed.
-
Close the form.
|
11 |
To reload a certificate or keypair file from a local compact flash drive, perform the following steps.
-
Choose Admin Certificate→Reload File from the More Actions button menu. The Admin Certificate Reload File form opens.
-
Configure the required parameters.
-
Click Execute. The file content is reloaded.
-
Close the form.
|
12 |
To clear the OCSP cache, perform the following steps.
-
Choose Admin Certificate→Clear OCSP Cache from the More Actions button menu. The Admin Certificate Clear OCSP Cache form opens.
-
Configure the required parameters.
-
Click Execute. The file content is reloaded.
-
Close the form.
|
13 |
To import a Secure ND RSA keypair, perform the following steps.
-
Choose Admin Certificate→Secure ND Import from the More Actions button menu. The Admin Certificate Secure ND Import form opens.
-
Configure the required parameters.
-
Click Execute. The keypair is imported.
-
Close the form.
|
14 |
To export the Secure ND RSA keypair, perform the following steps.
-
Choose Admin Certificate→Secure ND Export from the More Actions button menu. The Admin Certificate Secure ND Export form opens.
-
Click Execute. The keypair is exported.
-
Close the form.
|
15 |
To perform CMP2 actions, see
How do I perform CMPv2 actions? .
|
16 |
To enroll EST profile, perform the following steps.
-
Choose Admin Certificate→Enroll EST Profile from the More Actions button menu. The Admin Certificate Enroll EST Profile form opens.
-
Configure the required parameters.
-
Click Execute. The file content is enrolled.
-
Close the form.
|
17 |
To EST distribute CA Certificate, perform the following steps.
-
Choose Admin Certificate→EST Distribute CA Certificate from the More Actions button menu. The Admin Certificate EST Distribute CA Certificate form opens.
-
Configure the required parameters.
-
Click Execute. The file content is distributed.
-
Close the form.
|
18 |
To renew EST profile, perform the following steps.
-
Choose Admin Certificate→Renew EST Profile from the More Actions button menu. The Admin Certificate Renew EST Profile form opens.
-
Configure the required parameters.
-
Click Execute. The file content is renewed.
-
Close the form.
|
19 |
Close the Site Security Public Key Infrastructure (Edit) form.
End of steps |