P-660HN-51 User’s Guide
136
CHAPTER 12
Certificates
12.1 Overview
The Zyxel Device can use certificates (also called digital IDs) to authenticate users. Certificates are
based on public-private key pairs. A certificate contains the certificate owner’s identity and public key.
Certificates provide a way to exchange public keys for use in authentication.
12.1.1 What You Can Do in this Chapter
• The Local Certificates screen lets you generate certification requests and import the Zyxel Device's
CA-signed certificates (Section 12.4 on page 143).
• The Trusted CA screen lets you save the certificates of trusted CAs to the Zyxel Device (Section 12.4 on
page 143).
12.2 What You Need to Know
The following terms and concepts may help as you read through this chapter.
Certification Authority
A Certification Authority (CA) issues certificates and guarantees the identity of each certificate owner.
There are commercial certification authorities like CyberTrust or VeriSign and government certification
authorities. The certification authority uses its private key to sign certificates. Anyone can then use the
certification authority's public key to verify the certificates. You can use the Zyxel Device to generate
certification requests that contain identifying information and public keys and then send the
certification requests to a certification authority.
12.3 The Local Certificates Screen
Click Security Settings > Certificates to open the Local Certificates screen. This is the Zyxel Device’s
summary list of certificates and certification requests.