beautypg.com

Types of certificates in certificate manager, Types of certificates in certificate manager -9 – Alcatel-Lucent 8950 AAA User Manual

Page 377

background image

Types of Certificates in Certificate Manager

8950 AAA Certificate Manager

............................................................................................................................................................................................................................................................
365-360-001R6.0

Issue 1, December 2008

22-9

............................................................................................................................................................................................................................................................

Types of Certificates in Certificate Manager

About the Types of Certificates

The Certificate Manager allows you to create different types of certificates and perform
the options as described in

Table 22-2

.

Table 22-2 Certificate Manager–Types of Certificates

Certificate Types

Description

Root Certificate

Generates a key pair and a self signed root
certificate which can be used to sign server and
client certificates.

This option creates a file containing the root
certificate and encrypted private key and a trusted
file for import into entities needing to validate
certificates signed by this root.

Server Certificate

Generates a key pair and a server certificate which
can be used to identify a server.

The server certificate must be signed by a root
certificate and the password for the root encrypted
private key must be known. Typically the
certificate and the private key generated by the root
certificate selection above are used. The server
certificate contains extensions suitable for server
authentication.

Client Certificate

Generates a key pair and a client certificate which
can be used to identify a client.

The client certificate must be signed by a root
certificate and the password for the root encrypted
private key must be known. Typically the
certificate and the private key generated by the root
certificate selection above are used. The client
certificate contains extensions suitable for client
authentication.