Netgear XCM8806 - 8800 SERIES 6-SLOT CHASSIS SWITCH ユーザーズマニュアル

ページ / 968
514
   
|   
Chapter 17.  Security  
NETGEAR 8800 User Manual 
. To install the module, see the instructions in 
.
You must upload or generate a certificate for SSL server use. Before you can upload a 
certificate, you must purchase and obtain an SSL certificate from an Internet security vendor. 
The following security algorithms are supported: 
•     
RSA for public key cryptography (generation of certificate and public-private key pair, 
certificate signing). RSA key size between 1024 and 4096 bits.
•     
Symmetric ciphers (for data encryption): RC4, DES, and 3DES.
•     
Message Authentication Code (MAC) algorithms: MD5 and SHA.
This section describes the following topics:
Enabling and Disabling SSL
This section describes how to enable and disable SSL on your switch. 
Note:  
To use SSL for secure HTTPS web-based login, you must install the 
SSH module that works in concert with that core software image, 
and reboot the switch. 
Keep in mind the following guidelines when using SSL:
•     
To use SSL with web-based login (secure HTTP access, HTTPS) you must specify the 
HTTPS protocol when configuring the redirect URL. 
•     
If you are downloading the SSH module for the first time and want to immediately use 
SSL for secure HTTPS web-based login, restart the 
thttpd
 process after installing the 
SSH module. For more detailed information about activating the SSH module, see 
To enable SSL and allow secure HTTP (HTTPS) access on the default port (443), use the 
following command:
enable web https
To disable SSL and HTTPS, use the following command: 
disable web https