Cisco Cisco Email Security Appliance C170 Guia Do Utilizador

Página de 1140
 
22-16
Cisco AsyncOS 8.5.5 for Email Security User Guide
 
Chapter 22      Encrypting Communication with Other MTAs
  Managing Lists of Certificate Authorities
Step 2
Click Edit Settings in the Certificate Authorities section.
Step 3
Click View System Certificate Authorities.
Disabling the System Certificate Authority List
The pre-installed system certificate authorities list cannot be removed from the appliance, but you can 
enable or disable it. You might want to disable it to allow the appliance to only use your custom list to 
verify certificates from remote hosts. 
Procedure 
Step 1
Navigate to the Network > Certificates page.
Step 2
Click Edit Settings in the Certificate Authorities section.
Step 3
Click Disable for the System List.
Step 4
Submit and commit your changes.
Importing a Custom Certificate Authority List
You can create a custom of list trusted certificate authorities and import it onto the appliance. The file 
must be in the PEM format and include certificates for the certificate authorities that you want the 
appliance to trust. 
Procedure 
Step 1
Navigate to the Network > Certificates page.
Step 2
Click Edit Settings in the Certificate Authorities section.
Step 3
Click Enable for the Custom List.
Step 4
Enter the full path to the custom list on a local or network machine. 
Step 5
Submit and commit your changes.
Exporting a Certificate Authorities List
If you want to use only a subset of the trusted certificate authorities in the system or edit an existing 
custom list, you can export the list to a .txt file and edit it to add or remove certificate authorities. After 
you have finished editing the list, import the file back onto the appliance as a custom list.
Procedure 
Step 1
Navigate to the Network > Certificates page.