Access Security Guide K/KA/KB.15.15

A default TA profile is automatically created when the conditions explained in section “TA certificates
panel” (page 518) have been satisfied.
The install option is not available if:
1. Both TA profiles are used and neither is named “default.
2. The current certificate with ‘usage=web’ is linked to a TA profile whose name is not “default
Switch identity profile panel
Switch Identity Profile displays the details of switch identity profile, if already configured with the
CLI. Otherwise displays Switch Identity Profile is not configured.
Installed certificates panel
The Installed Certificates panel displays the certificate profile, usage, key size, status, type, beginning
and end date for currently installed certificates.
Figure 355 Installed certificates
View Certificate displays all certificates in the certificate chain. The view certificate list displays the
local certificate, up to three intermediate certificates and one TA certificate.
When a certificate is selected, a detailed view of the certificate is displayed in a popup window.
Figure 356 TA certificate
Certificate requests panel
The Certificate Requests panel displays the status of currently requested certificate.
Within the panel two links are available: Create Self-Signed Certificate and Create CSR.
The status and type of a current certificate requested could be:
1. No pending requests
2. Create and install a self-signed certificate.
3. Create a CSR
4. Certificate request pending.
Any existing certificate will be replaced with one of the same name. A non-default TA Profile with
a certificate configured with usage of web will not be allowed.
Create Self-Signed Certificate
Creates a self-signed certificate. Upon selection of this link, an edit request form becomes
available which provides all required information for the creation of the certificate.
Create CSR
Creates a certificate request which will be forwarded to the CA. Upon selection of this link, an
edit request form becomes available which provides all of the required information for the
creation of the certificate. This request is forwarded to the CA when complete.
Web support 519