Contents
xxxv
Cisco ASA 5500 Series Configuration Guide using ASDM
Public Key Cryptography 44-2
Certificate Scalability 44-3
Key Pairs 44-3
Trustpoints 44-4
Certificate Enrollment 44-4
Proxy for SCEP Requests 44-4
Revocation Checking 44-5
Supported CA Servers 44-5
CRLs 44-5
OCSP 44-6
The Local CA 44-7
Storage for Local CA Files 44-7
The Local CA Server 44-7
Licensing Requirements for Digital Certificates 44-8
Prerequisites for Local Certificates 44-8
Prerequisites for SCEP Proxy Support 44-8
Guidelines and Limitations 44-9
Configuring Digital Certificates 44-10
Configuring CA Certificate Authentication 44-10
Adding or Installing a CA Certificate 44-10
Editing or Removing a CA Certificate Configuration 44-11
Showing CA Certificate Details 44-12
Configuring CA Certificates for Revocation 44-12
Configuring CRL Retrieval Policy 44-13
Configuring CRL Retrieval Methods 44-13
Configuring OCSP Rules 44-14
Configuring Advanced CRL and OCSP Settings 44-15
Configuring Identity Certificates Authentication 44-16
Adding or Importing an Identity Certificate 44-16
Showing Identity Certificate Details 44-18
Deleting an Identity Certificate 44-18
Exporting an Identity Certificate 44-19
Generating a Certificate Signing Request 44-19
Installing Identity Certificates 44-20
Configuring Code Signer Certificates 44-21
Showing Code Signer Certificate Details 44-22
Deleting a Code Signer Certificate 44-22
Importing a Code Signer Certificate 44-22
Exporting a Code Signer Certificate 44-22