iii
Cisco IOS XR System Security Configuration Guide
CONTENTS
Preface xi
Changes to This Document xi
Obtaining Documentation, Obtaining Support, and Security Guidelines xi
Implementing Certification Authority Interoperability on Cisco IOS XR Software SC-1
Contents SC-1
Prerequisites for Implementing Certification Authority SC-2
Restrictions for Implementing Certification Authority SC-2
Information About Implementing Certification Authority SC-2
Supported Standards for Certification Authority Interoperability SC-2
Certification Authorities SC-3
How to Implement CA Interoperability SC-5
Configuring a Router Hostname and IP Domain Name SC-6
Generating an RSA Key Pair SC-7
Declaring a Certification Authority and Configuring a Trusted Point SC-8
Authenticating the CA SC-10
Requesting Your Own Certificates SC-11
Configuring Certificate Enrollment Using Cut-and-Paste SC-12
Configuration Examples for Implementing Certification Authority Interoperability SC-14
Configuring Certification Authority Interoperability: Example SC-14
Where to Go Next SC-16
Additional References SC-16
Related Documents SC-16
Standards SC-16
MIBs SC-17
RFCs SC-17
Technical Assistance SC-17
Implementing Internet Key Exchange Security Protocol on Cisco IOS XR Software SC-19
Contents SC-20
Prerequisites SC-20
Information About Implementing IKE Security Protocol Configurations for IPSec Networks SC-20
Supported Standards SC-21
Concessions for Not Enabling IKE SC-22
IKE Policies SC-22