112
Figure 497 Retrieving the CRL
Verifying the configuration
After the configuration, select Certificate Management > Certificate from the navigation tree to
display detailed information about the retrieved CA certificate and local certificate, or select
Certificate Management > CRL from the navigation tree to display detailed information about the
retrieved CRL.
IKE negotiation with RSA digital signature
Network requirements
An IPsec tunnel is set up between Router A and Router B to secure the traffic between Host A on
subnet 10.1.1.0/24 and Host B on subnet 11.1.1.0/24.
Router A and Router B use IKE for IPsec tunnel negotiation and RSA digital signature of a PKI
certificate system for identity authentication.
Router A and Router B use different CAs. They might also use the same CA as required.