Performing device administration tasks Manage X.509 certificates and host key pairs
Digi TransPort® Routers User Guide
931
Split a private key
For increased security, you can split the private key file between the router flash and an USB memory
stick. Once a private key has been split and stored in two parts, the USB memory stick must be
present for any successful IKE negotiations that involve the private key. Because the USB memory
stick only contains a part of the private key, you cannot use it in another router. For more information
on using a USB memory stick, see Manage files using USB storage devices.
Command line
The command to split a private key is:
pr i vspl i t <cer t i f i cat e f i l ename>