TMS zl Management and Configuration Guide ST.1.1.100226

7-91
Virtual Private Networks
Configure an IPsec Site-to-Site VPN with IKE
7. For Certificate Name, type a descriptive alphanumeric string. The name
must be unique for this request.
8. For Signature Algorithm, select the algorithm used to sign the certificate:
MD5 with RSA
SHA-1 with RSA
SHA-1 with DSA
You must select the same algorithm that is used by the private key. That
is, select MD5 with RSA or SHA-1 with RSA for an RSA key; select SHA-1
with DSA for a DSA key.
9. For Private Key Identifier, select the private key that you added in step 3 on
page 7-88.
10. For Subject Name, type the FQDN of the TMS zl Module. Use the format
<name.domainname>. For example, type TMS.procurve.com.
The certificate request will store this name as a distinguished name,
automatically adding /CN= to the name that you type.
11. In the Subject Alternate Names section, you can specify other IDs with
which the module identifies itself. Specifying these IDs is optional:
a. Type an IP address in one or both IP Address boxes.
Typically, the IP address is the module’s public IP address, but you
can specify any valid IP address.
b. Type an FQDN in one or both Domain Name boxes.
c. Type an email address in one or both Email ID boxes.
The email address must be entered in a valid format, but it does not
actually have to exist. It is simply an ID.