35-27
Cisco ASA 5500 Series Configuration Guide using ASDM
OL-20339-01
Chapter 35 Configuring Digital Certificates
Managing the User Database
Step 5 Choose one or more DN attributes that you want to change from the drop-down list, enter a value, and
then click Add or Delete. Available X.500 attributes for the Certificate Subject DN are the following:
• Common Name (CN)
• Department (OU)
• Company Name (O)
• Country (C)
• State/Province (ST)
• Location (L)
• E-mail Address (EA)
Step 6 Click OK when you are done to close the Certificate Subject DN dialog box.
Step 7 Check the Allow enrollment check box to reenroll the user, and then click Edit User.
The updated user details appear in the Manage User Database pane.
Deleting a Local CA User
To remove the user from the database and any certificates issued to that user from the local CA database,
select the user, and then click Delete.
Note A deleted user cannot be restored. To recreate the deleted user record, click Add to reenter all of the user
information.
Allowing User Enrollment
To enroll the selected user, click Allow Enrollment.
The status of the user changes to “enrolled” in the Manage User Database pane.
Note If the user is already enrolled, an error message appears.
Viewing or Regenerating an OTP
To view or regenerate the OTP of the selected user, perform the following steps:
Step 1 Click View/Regenerate OTP to display the View & Regenerate OTP dialog box.
The current OTP appears.
Step 2 After you are done, click OK to close the View & Regenerate OTP dialog box.
Step 3 To regenerate the OTP, click Regenerate OTP.
The newly generated OTP appears.