Reset Search
 

 

Article

VSP 9000 3rd party certificate installation

« Go Back

Information

 
TitleVSP 9000 3rd party certificate installation
Objective
How to install 3rd party certificate on VSP9K?
Environment
VSP 9000
Procedure
VSP 9000 does not support generating .CSR (certificate signing request) file, which is necessary for issuing certificate by CA (Certification Authority).
  1. Install openssl software: https://www.cloudinsidr.com/content/how-to-install-the-most-recent-version-of-openssl-on-windows-10-in-64-bit/
  2. Generate .CSR and private key in openssl software: https://www.digitalocean.com/community/tutorials/openssl-essentials-working-with-ssl-certificates-private-keys-and-csrs
  3. Provide .CSR only to CA.
  4. CA should send back issued certificate.
  5. Convert certificate to .cert format.
  6. Install certificate and private key to VSP9K:
  • Rename the files to host.cert and host.key.
  • Upload the certificate and key files to the /intflash/.ssh/ directory
  • Reboot the system and the new certificate loads during the boot-up process.
Note: The system does not validate the expiration date on the certificate and performs no action after the certificate expires. You can either replace the host.cert and host.key files with new files (if the certificate is a user-generated certificate), or delete the host.cert and host.key files, and then reboot the system to load a new certificate after the original certificate expires. 
Additional notes

Feedback

 

Was this article helpful?


   

Feedback

Please tell us how we can make this article more useful.

Characters Remaining: 255