beautypg.com

Certificate management configuration example, Network requirements, Configuring the ca server – H3C Technologies H3C WX3000E Series Wireless Switches User Manual

Page 627

background image

606

Figure 637 CRL information

Certificate management configuration example

Network requirements

As shown in

Figure 359

, configure the AC as the PKI entity, so that:

The AC submits a local certificate request to the CA server, which runs the RSA Keon software.

The AC acquires CRLs for certificate verification.

Figure 638 Network diagram

Configuring the CA server

1.

Create a CA server named myca.
In this example, you must first configure the basic attributes of Nickname and Subject DN on the
CA server: the nickname is the name of the trusted CA, and the subject DN is the DN attributes of

the CA, including the common name (CN), organization unit (OU), organization (O), and country

(C). Leave the default values of the other attributes.