Cisco Cisco Broadband Access Center Telco Wireless 3.8
8-25
Cisco Broadband Access Center for Cable Administrator’s Guide
OL-2445-02
Chapter 8 Broadband Access Center for Cable Support Tools and Advanced Concepts
Managing KDC Certificates with the PKCert Tool
Step 3
Enter the RDU username (admin) and press Enter.
Please type RDU username: admin
This prompt appears:
Please type RDU password:
Step 4
Enter the RDU password (changeme) and press Enter.
Please type RDU password: changeme
This message appears:
The logging is currently set at level: 4 (warning)
All tracing is currently disabled.
Managing KDC Certificates with the PKCert Tool
The PKCert tool is used to install, and then manage, the KDC certificates that are required by the KDC
for its operation. This tool takes the CableLabs service provider certificates that you obtain and converts
them into the series of certificate files, similar to those shown below, that the KDC needs to operate.
for its operation. This tool takes the CableLabs service provider certificates that you obtain and converts
them into the series of certificate files, similar to those shown below, that the KDC needs to operate.
•
Cablelabs_Service_Provider_Root.cer
•
Service_Provider.cer
•
Local_System.cer
•
KDC.cer
This tool also allows you to verify certificate chains and copy and rename a certificate chain to the names
required by the KDC.
required by the KDC.
Note
This tool is only available for use when the KDC component is installed.
Running the PKCert Tool
Run the PKCert tool by executing this command, the default location of which is in the
<BPR_HOME>/kdc directory:
<BPR_HOME>/kdc directory:
PKCert.sh [function] [option]
Where:
•
[function]—identifies which function will be performed. For example, enter one of these switches
to choose the appropriate function:
to choose the appropriate function:
–
-c—Creates a KDC certificate. See the
for
additional information.
–
-v—Verifies and normalizes the PacketCable certificate set. See the
for additional information.