User's Manual

Table Of Contents
4/1/05 Adding SSL to the 802.11 Interface
OL-7426-02
The Cisco Wireless LAN Controller completes the bootup process as described in Step 4:
Connecting and Using the CLI Console in the Cisco 4100 Series Wireless LAN Controller Quick
Start Guide.
Be sure that operators using the Web User Interface know that they may securely log into the
Cisco Wireless LAN Controller using “https://<Cisco Wireless LAN Controller_IPaddress>.
Refer to the Transferring Files To and From a Cisco Wireless LAN Controller section for other file upload
and download instructions.
Adding SSL to the 802.11 InterfaceAdding SSL to the 802.11 Interface
When you plan to use a Web Authorization (WebAuth) certificate to secure the Cisco Wireless LAN
Controller when associating new clients, note that the Operating System automatically generates its
own local Web Authentication SSL certificate and automatically applies them to the 802.11 Interface.
Verify whether or not the locally generated Web Authentication certificate is already loaded:
>show certificate summary
Web Administration Certificate................. Locally Generated
Web Authentication Certificate................. Locally Generated
Certificate compatibility mode:................ off
Continue with one of the following two sections to add a Locally Generated Certificate or an Externally
Generated Certificate.
Locally Generated CertificateLocally Generated Certificate
Should you desire to have the Operating System generate another Web Authentication SSL certificate,
complete the following:
In the CLI, enter:
>config certificate generate webauth
Wait a few seconds, and the Cisco Wireless LAN Controller returns:
Web Authentication certificate has been generated
Verify that the Web Administration certificate is properly loaded:
>show certificate summary
Web Administration Certificate................. Locally Generated
Web Authentication Certificate................. Locally Generated
Certificate compatibility mode:................ off
Save the SSL certificate, key and secure web password in active working memory to NVRAM
(non-volatile RAM) so your changes are retained across reboots:
>save config
Are you sure you want to save? (y/n) y
Configuration Saved!
Reboot the Cisco Wireless LAN Controller:
>reset system
Are you sure you would like to reset the system? (y/n) y
System will now restart!
The Cisco Wireless LAN Controller completes the bootup process as described in Step 4:
Connecting and Using the CLI Console in the Cisco 2000 Series Wireless LAN Controller Quick
Start Guide or Cisco 4100 Series Wireless LAN Controller Quick Start Guide.
Be sure that client operators know that they may securely associate with the Cisco SWAN.