beautypg.com

H3C Technologies H3C WA3600 Series Access Points User Manual

Page 264

background image

251

Figure 248 Configure a PKI entity

2.

Create a PKI domain.

a.

Click the Domain tab

b.

Click Add.

c.

Enter torsa as the PKI domain name.

d.

Enter myca as the CA identifier.

e.

Select aaa as the local entity.

f.

Select CA as the authority for certificate request.

g.

Enter http://4.4.4.133:446/c95e970f632d27be5e8cbf80e971d9c4a9a93337 as the URL for
certificate request. The URL must be in the format of http://host:port/Issuing Jurisdiction ID,

where Issuing Jurisdiction ID is the hexadecimal string generated on the CA.

h.

Select Manual as the certificate request mode.

i.

Click the expansion button before Advanced Configuration to display the advanced
configuration items.

j.

Click the Enable CRL Checking box.

k.

Enter http://4.4.4.133:447/myca.crl as the CRL URL.

l.

Click Apply.
A dialog box appears, asking "Fingerprint of the root certificate not specified. No root
certificate validation will occur. Continue?"

m.

Click OK.

This manual is related to the following products: