Overview of SSL Certificates and Keys
OL-5655-01
Configuring SSL Certificates and Keys
This chapter describes how to generate and import SSL certificates and keys, and
how to associate them with files for use in the CSS. It contains the following
major sections:
Overview of SSL Certificates and Keys
•
Generating Certificates and Private Keys in the CSS
•
Preparing a Global Site Certificate
•
Importing or Exporting Certificates and Private Keys
•
Associating Certificate and Private Key Files with Names
•
Removing Certificates and Private Keys from the CSS
•
Digital certificates and key pairs are a form of digital identification for user
authentication. Certificate Authorities (CAs), such as VeriSign and Thawte, issue
certificates. A client or server certificate includes the name of the issuing
authority and digital signature, the serial number, the name of the client or server
that the certificate was issued for, the public key, and the time stamps that indicate
the certificate's expiration date.
A CA also provides a trusted CA certificate to verify that a client or server
certificate originated from the CA. This certificate also can verify that a certificate
revocation list (CRL) originated from the CA. This CA certificate includes the CA
distinguished name, public key, and digital signature.
C H A P T E R
Cisco Content Services Switch SSL Configuration Guide
3
3-1