Техническая Инструкция для Cisco Cisco ASA 5520 Adaptive Security Appliance

Скачать
Страница из 25
particular attributes to be included before an identity certificate is issued. If unsure of the
required attributes, check with the vendor for details.
Once the appropriate values are added, click OK. The Add Identity Certificate dialog box
appears with the Certificate Subject DN field populated.
11.
Click Advanced.
12.
In the FQDN field, enter the FQDN that is used to access the device from the Internet. Click
OK.
13.
Leave the Enable CA flag in basic constraints extension option checked. Certificates
without the CA flag now cannot be installed on the ASA as CA certificates by default. The
basic constraints extension identifies whether the subject of the certificate is a CA and the
maximum depth of valid certification paths that include this certificate. Bypass this
requirement by unchecking the option.
14.
Click OK, and then click Add Certificate. A prompt displays in order to save the CSR to a
file on the local machine.
15.
Click Browse, choose a location in which to save the CSR, and save the file with the .txt
extension. Note: When the file is saved with a .txt extension, the PKCS#10 request can be
16.