Verifying the configuration, Ike negotiation with rsa digital signature, Network requirements – H3C Technologies H3C MSR 50 User Manual
Page 504
119
Figure 511 Retrieving the CRL
Verifying the configuration
After the configuration, select Certificate Management > Certificate from the navigation tree to display
detailed information about the retrieved CA certificate and local certificate, or select Certificate
Management > CRL from the navigation tree to display detailed information about the retrieved CRL.
IKE negotiation with RSA digital signature
Network requirements
An IPsec tunnel is set up between Router A and Router B to secure the traffic between Host A on subnet
10.1.1.0/24 and Host B on subnet 11.1.1.0/24.
Router A and Router B use IKE for IPsec tunnel negotiation and RSA digital signature of a PKI certificate
system for identity authentication.
Router A and Router B use different CAs. They might also use the same CA as required.