beautypg.com

Verifying the configuration, Ike negotiation with rsa digital signature, Network requirements – H3C Technologies H3C MSR 50 User Manual

Page 504

background image

119

Figure 511 Retrieving the CRL

Verifying the configuration

After the configuration, select Certificate Management > Certificate from the navigation tree to display
detailed information about the retrieved CA certificate and local certificate, or select Certificate

Management > CRL from the navigation tree to display detailed information about the retrieved CRL.

IKE negotiation with RSA digital signature

Network requirements

An IPsec tunnel is set up between Router A and Router B to secure the traffic between Host A on subnet

10.1.1.0/24 and Host B on subnet 11.1.1.0/24.
Router A and Router B use IKE for IPsec tunnel negotiation and RSA digital signature of a PKI certificate

system for identity authentication.
Router A and Router B use different CAs. They might also use the same CA as required.

This manual is related to the following products: