Cisco Cisco Identity Services Engine 1.3 Fascicule

Page de 22
  
 
 
安全访问操作指南
 
步骤
 2 
运行会话下载。
 
./session_download.sh -keystoreFilename self2.jks -keystorePassword cisco123 -truststoreFilename root.jks -
truststorePassword cisco123 -hostname 10.0.0.96 -username JohnMACbook 
 
------- properties ------- 
version=1.0.0 
hostnames=10.0.0.96 
username=JohnMACbook 
keystoreFilename=self2.jks 
keystorePassword=cisco123 
truststoreFilename=root.jks 
truststorePassword=cisco123 
filter=null 
start=null 
end=null 
-------------------------- 
connecting... 
connected. 
starting at Wed Dec 10 09:55:36 PST 2014... 
 
session (ip=10.0.0.18, Audit Session Id=0A0000020000000B006E1086, User Name=jeppich, AD User DNS 
Domain=lab6.com, AD Host DNS Domain=null, AD User NetBIOS Name=LAB6, AD Host NETBIOS Name=null, Calling 
station id=00:0C:29:D1:8D:90, Session state= STARTED, Epsstatus=null, Security Group=null, Endpoint 
Profile=VMWare-Device, NAS IP=10.0.0.2, NAS Port=GigabitEthernet1/0/15, RADIUSAVPairs=[ Acct-Session-
Id=00000002], Posture Status=null, Posture Timestamp=, Session Last Update Time=Wed Dec 10 08:27:59 PST 
2014 )... ending at: Wed Dec 10 09:55:36 PST 2014 
 
--------------------------------------------------- 
downloaded 1 sessions in 100 milliseconds 
--------------------------------------------------- 
 
connection closed 
查看密钥库条目
 
通过查看密钥库条目,可以查看身份和信任密钥库的受信任证书条目。
 
keytool -list -v -keystore self2.jks 
Enter keystore password:  
 
Keystore type: JKS 
Keystore provider: SUN 
 
Your keystore contains 2 entries 
 
Alias name: isecert 
Creation date: Dec 10, 2014 
Entry type: trustedCertEntry 
 
Owner: CN=ise.lab6.com 
Issuer: CN=ise.lab6.com 
Serial number: 548502f500000000ec27e53c1dd64f46 
Valid from: Sun Dec 07 17:46:29 PST 2014 until: Mon Dec 07 17:46:29 PST 2015 
Certificate fingerprints: 
 
 MD5: 04:7D:67:04:EC:D2:F5:BC:DC:79:4D:0A:FF:62:09:FD 
 
 SHA1: 5A:7B:02:E4:07:A1:D2:0B:7D:A5:AE:83:27:3B:E7:33:33:30:1E:32 
 
 SHA256: 
C4:21:6C:6F:5B:06:F3:2C:D7:26:35:CB:BE:2B:1B:FF:0E:EE:09:91:F6:B6:54:0C:6F:63:CB:43:1F:77:F2:37 
 
 Signature algorithm name: SHA1withRSA 
 
 Version: 3 
 
Extensions:  
 
#1: ObjectId: 2.5.29.19 Criticality=false 
BasicConstraints:[ 
 
 
 
© 2015 思科系统公司 
 13