cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
979
Views
0
Helpful
1
Replies

Cisco Switch Web Interface - SSL

danieltu
Level 1
Level 1

Hello,

I have a server farm with 2960G switches and i'd like to implement the Cisco switch Web GUI.

I configured "IP HTTP SECURE-SERVER" command and i'v kept the default encryption.

I noticed while configuring the switches that i can choose an encryption algorithm for the self-signed certificate.

and so I log on with a Switch user and PW...the problem being that i have to configure IE setting - SSL v3.0 - to be enabled and from a short research, its a security risk to leave that on (its off by default).

As such, I would like to use my own domain certificate. Is that possible? 

Because i've read from cisco documents that you can point the switch to a TrustPoint - can that TP be a CA in my Domain?

How do I configure such a thing?

Great thanks,

Daniel

1 Reply 1

Francesco Molino
VIP Alumni
VIP Alumni

Hi

It's always recommended to use your own CA certificate infrastructure.

In order to configure such certificate, report to the documentation link:

http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst2960x/software/15-0_2_EX/security/configuration_guide/b_sec_152ex_2960-x_cg/b_sec_152ex_2960-x_cg_chapter_01010.html

Thanks

PS: Please don't forget to rate and mark as correct answer if this answered your question


Thanks
Francesco
PS: Please don't forget to rate and select as validated answer if this answered your question
Review Cisco Networking products for a $25 gift card