Chapter 89: Secure HTTPS Web Browser Server Commands
1424
country
Specifies the ISO 3166-1 initials of a country. This parameter must
be two uppercase characters.
duration
Specifies the number of days the certificate is valid. The range is
30 to 3650 days.
For a valid certificate to be active, you need to set the system clock.
See “Manually Setting the Date and Time” on page 117 or
“Activating the SNTP Client and Specifying the IP Address of an
NTP or SNTP Server” on page 369.
Mode
Global Configuration mode
Description
Use this command to create self-signed certificates for secure HTTPS
web browser management of the switch. All the parameters in the
command are required.
Entering the WRITE or COPY RUNNING-CONFIG STARTUP-CONFIG
command after creating a self-signed certificate is unnecessary because
certificates are not stored in the active boot configuration file.
Generating a certificate is CPU intensive. It should be performed
before the switch is connected to your network or during periods of
low network activity.
Confirmation Command
“SHOW IP HTTPS” on page 1433
Example
This example creates a self-signed certificate with the following
specifications:
ID number: 2
Key length: 1280
Passphrase: trailtree
Common name: 167.214.121.45