Motorola Solutions AP-6511 Access Point System Reference Guide
12-20
14.Select OK to import the signed certificate. Select Cancel to revert the screen to its last saved
configuration
15.To optionally export a trustpoint to a remote location, select the Export button from the Trustpoints
screen.
Once a certificate has been generated on the authentication server, export the self signed certificate. A
digital CA certificate is different from a self signed certificate. The CA certificate contains the public and
private key pairs. The self certificate only contains a public key. Export the self certificate for publication
on a Web server or file server for certificate deployment or export it in to an Active Directory Group Policy
for automatic root certificate deployment.
Additionally export the key to a redundant RADIUS server so it can be imported without generating a
second key. If there’s more than one RADIUS authentication server, export the certificate and don’t
generate a second key unless you want to deploy two root certificates.
Figure 12-12 Export Trustpoint screen
16.Define the following configuration parameters required for the Export of the trustpoint.
IP Address Enter IP address of the server used to import the signed certificate. This option
is not valid for cf, usb1, and usb2.
Hostname Provide the hostname of the server used to import the signed certificate. This
option is not valid for cf, usb1, and usb2.
Path Specify the path to the signed certificate. Enter the complete relative path to
the file on the server.
Trustpoint Name Enter the 32 character maximum name assigned to the target trustpoint. The
trustpoint signing the certificate can be a certificate authority, corporation or
individual.
Key Passphrase Define the key used by both the Access Point and the server (or repository) of
the target trustpoint. Select the Show textbox to expose the actual characters
used in the key. Leaving the Show checkbox unselected displays the
passphrase as a series of asterisks “*”.