D-Link DSR-Series User Manual 115
Section 7 - VPN
Certiīcates
Trusted Certiīcates
This router uses digital certiīcates for IPsec VPN authentication. You can obtain a digital certiīcate from a well-
known Certiīcate Authority (CA) such as VeriSign, or generate and sign your own certiīcate using functionality
available on this gateway.
The router comes with a self-signed certiīcate, and this can be replaced by one signed by a CA as per your
networking requirements. A CA certiīcate provides strong assurance of the serverās identity and is a requirement
for most corporate network VPN solutions.
The certiīcates menu allows you to view a list of certiīcates (both from a CA and self-signed) currently loaded on
the router. The following certiīcate data is displayed in the list of Trusted (CA) certiīcates:
CA Identity (Subject Name): The certiīcate is issued to this person or organization
Issuer Name: This is the CA name that issued this certiīcate
Expiry Time: The date after which this Trusted certiīcate becomes invalid
To upload a certiīcate:
1. Click VPN > IPSec VPN > Certiīcates > Trusted Certiīcates tab.
2. Click the Browse button. Locate your certiīcate and click Open.
3. Click Upload.