beautypg.com

Allied Telesis AT-9000 Series User Manual

Page 1378

background image

Chapter 87: Secure HTTPS Web Browser Server Commands

1350

country

Specifies the ISO 3166-1 initials of a country. This parameter must
be two uppercase characters.

duration

Specifies the number of days the certificate is valid. The range is
30 to 3650 days.

Note

For a valid certificate to be active, you need to set the system clock.
See “Manually Setting the Date and Time” on page 89 or “Activating
the SNTP Client and Specifying the IP Address of an NTP or SNTP
Server” on page 297.

Mode

Global Configuration mode

Description

Use this command to create self-signed certificates for secure HTTPS
web browser management of the switch. All the parameters in the
command are required.

Entering the WRITE or COPY RUNNING-CONFIG STARTUP-CONFIG
command after creating a self-signed certificate is unnecessary because
certificates are not stored in the active boot configuration file.

Note

Generating a certificate is CPU intensive. It should be performed
before the switch is connected to your network or during periods of
low network activity.

Confirmation Command

“SHOW IP HTTPS” on page 1359

Example

This example creates a self-signed certificate with the following
specifications:

ID number: 2

Key length: 1280

Passphrase: trailtree

Common name: 167.214.121.45