User's Manual

Table Of Contents
4/1/05 Adding SSL to the Web User Interface
OL-7426-02
Independently enable and/or disable the 802.11b, 802.11a, and 802.11g Cisco 1000 Series
lightweight access point networks.
Enable or disable the Radio Resource Management (RRM) (Auto RF).
The Cisco Wireless LAN Controller saves your configuration, reboots with your changes, and
prompts you to log in or enter ‘Recover-Config’ to reset the Cisco Wireless LAN Controller to
factory default configuration and return to the Startup Wizard.
Continue with Using the Cisco SWAN CLI.
Adding SSL to the Web User InterfaceAdding SSL to the Web User Interface
When you plan to secure the Cisco Wireless LAN Controller HTTP: Web User Interface using the https:
(HTTP + SSL) protocol, note that the Operating System automatically generates its own local Web
Administration SSL certificate and automatically applies it to the Web User Interface. Verify whether or
not the locally generated Web Administration certificate is already loaded:
>show certificate summary
Web Administration Certificate................. Locally Generated
Web Authentication Certificate................. Locally Generated
Certificate compatibility mode:................ off
Continue with either of the following two sections:
Locally Generated Certificate or an
Externally Generated Certificate.
Locally Generated CertificateLocally Generated Certificate
Should you desire to have the Operating System generate a new Web Administration SSL certificate,
complete the following:
In the CLI, enter:
>config certificate generate webadmin
Wait a few seconds, and the Cisco Wireless LAN Controller returns:
Web Administration certificate has been generated
Verify that the Web Administration certificate is properly loaded:
>show certificate summary
Web Administration Certificate................. Locally Generated
Web Authentication Certificate................. Locally Generated
Certificate compatibility mode:................ off
Enable Secure Web mode:
>config network secureweb enable
Save the SSL certificate, key and secure web password in active working memory to NVRAM
(non-volatile RAM) so your changes are retained across reboots:
>save config
Are you sure you want to save? (y/n) y
Note: The Cisco Wireless LAN Controller Country Code only operates with Cisco 1000
Series lightweight access points designed for operation in the associated Regulatory
Domain. Refer to the Cisco SWAN Supported Country Codes for Cisco Wireless LAN
Controller Country Code mapping to Cisco 1000 Series lightweight access point
Regulatory Domains.