Page 171 / 210
Scroll up to view Page 166 - 170
NetVanta 2000 Series System Manual
Section 5, DLP-017
61200361L1-1E
© 2002 ADTRAN, Inc.
171
7.
Enter a subject name to be used when generating the certificate request. For our example we will use
the fully qualified domain name (FQDN) of the test NetVanta 2000 series unit.
8.
Select the desired algorithm for generating the certificate request from the Signature Algorithm drop
down menu. The NetVanta 2000 series supports both DSS and RSA algorithms. When determining
the algorithm to use, remember that RSA is more secure than DSS.
Page 172 / 210
Section 5, DLP-017
NetVanta 2000 Series System Manual
172
© 2002 ADTRAN, Inc.
61200361L1-1E
9.
Select the key length used for the request from the drop down menu. The NetVanta 2000 series
supports both 512 and 1024 key lengths. When determining the key length to use, remember that the
bigger the key length the more security you have.
10.
Select the hash algorithm used for the request from the drop down menu. The NetVanta 2000 series
supports both MD5 and SHA1 hash algorithms. When determining the hash algorithm to use,
remember that SHA1 is more secure.
Page 173 / 210
NetVanta 2000 Series System Manual
Section 5, DLP-017
61200361L1-1E
© 2002 ADTRAN, Inc.
173
11.
Click the Ok button to submit your certificate request. The Certificate Request dialog box appears. The
name entered in Step 6 is displayed in the Name field. The actual self-certificate request (in X.509
PEM (Privacy Enhanced Mail) format) is displayed in the text box beneath the Name. Submit all of this
text to your Certificate Authority to receive your Self-Certificate.
12.
For our example we will copy all the text in the box and submit it to the test site to receive our
self-certificate. Highlight all the text in the box and hit <Ctrl + C> to copy the text.
Page 174 / 210
Section 5, DLP-017
NetVanta 2000 Series System Manual
174
© 2002 ADTRAN, Inc.
61200361L1-1E
13.
Open a second browser session and enter isakmp-test.ssh.fi in the URL Address field. This will display
the SSH Communications Security test certificate site.
14.
Click on the X.509 Certificate Enrollment test page link to display the certificate request processing
screen.
Page 175 / 210
NetVanta 2000 Series System Manual
Section 5, DLP-017
61200361L1-1E
© 2002 ADTRAN, Inc.
175
15.
Place your cursor in the text box on the screen and hit <Ctrl + V> to paste the copied certificate
request into the text box.
16.
Click on the Next Page button to display the PKCS#10 Data Verification page. On this page you will
need to verify the information used to generate your request. If you were working with a Certificate
Authority, you would have already agreed on this data and submitted it to them before generating the
request.