Netgear S3300-28X (GS728TX) - ProSAFE S3300 Smart Switch Series 관리자 가이드
Managing Device Security
228
S3300 Smart Switch
Certificate Management
Use this screen to generate or delete certificates.
To generate an SSL certificate:
1.
Select Security
Access > HTTPS
Certificate Management.
From the Certificate Present field, a Yes or No status displays.
2.
In the Certificate Management area, select Generate Certificates.
3.
Click the Apply button. The switch begins generating an SSL certificate.
4.
The Certificate Generation Status field shows information about the progress.
To delete an SSL certificate:
1.
Select Security
Access > HTTPS
Certificate Management.
From the Certificate Present field, a Yes or No status displays.
2.
In the Certificate Management area, select Delete Certificates.
3.
Click the Apply button.
Certificate Download
For the web server on the switch to accept HTTPS connections from a management station,
the web server needs a public key certificate. You can generate a certificate externally (for
example, off-line) and download it to the switch.
the web server needs a public key certificate. You can generate a certificate externally (for
example, off-line) and download it to the switch.
Before you download a file to the switch, the following conditions must be true:
•
The file to download from the TFTP server is on the server in the appropriate directory.
•
The file is in the correct format.
•
The switch has a path to the TFTP server.
To configure the certificate download settings for HTTPS sessions:
1.
Select Security
Access > HTTPS
Certificate Download.
2.
From the File Type list, select the type of SSL certificate to download, which can be one of
the following:
the following:
•
SSL Trusted Root Certificate PEM File. SSL Trusted Root Certificate File (PEM
Encoded).
Encoded).
•
SSL Server Certificate PEM File. SSL Server Certificate File (PEM Encoded).
•
SSL DH Weak Encryption Parameter PEM File. SSL Diffie-Hellman Weak
Encryption Parameter File (PEM Encoded).
Encryption Parameter File (PEM Encoded).
•
SSL DH Strong Encryption Parameter PEM File. SSL Diffie-Hellman Strong
Encryption Parameter File (PEM Encoded).
Encryption Parameter File (PEM Encoded).
3.
From the Server Address Type list, specify either IPv4 or DNS to indicate the format of the
TFTP Server Address field.
TFTP Server Address field.