Header
Home | Set as homepage | Add to favorites
  Search the Site     » Advanced Search
Sections
Syndication


Blogroll:

||||| ALL Cisco-Network ARTICLES |||||  
CCIE Journey,
The CCIE Journey,


CA Servers Interoperable with Cisco Routers

Sep 29,2009 by alperen

image

CA Servers Interoperable with Cisco Routers

CA interoperability permits Cisco IOS devices, PIX Firewalls, Cisco VPN Hardware devices, and CA servers to communicate so the VPN device can obtain and use digital certificates supplied by the CA. While IPSec can be implemented in the network without using a CA, the CA with SCEP provides enhanced manageability and scalability for IPSec.

The list of CAs supported could vary from VPN platform to platform, for example, PIX Firewalls might not support the same options as IOS devices or VPN hardware devices. A good idea is always to check the Cisco online documentation for the particular device and version of the operating system (OS) to confirm support and appropriate version numbers. The following are CA providers that support SCEP to interoperate for enrolling Cisco IOS routers:

Baltimore Technologies

Baltimore Technologies supports SCEP in UniCERT, its CA server, as well as the PKI Plus toolkit, making it easy for customers to implement certificates in their networks. UniCERT is a software solution installed and administered by the user on a local network server. Baltimore Technologies service specifics include the following:

  • Requirements�"The current release of the UniCERT CA software module is available for Windows servers. Must use Cisco IOS release 12.0(5)T and later.

  • Standards Supported�"The following standards are supported with this CA server: X509 v3, CRL version 2, PKCS# 1, 7, 10, 11, and 12, and many more protocols.

For more information on Baltimore products and features, consult their web site at
www.baltimore.com.

Microsoft Windows 2000 Certificate Services

Microsoft has integrated SCEP support into the Windows 2000 CA server via the Security Resource Kit for Windows 2000. This SCEP support allows Microsoft clients to obtain certificates and certificate revocation information from Microsoft Certificate Services for all of Cisco’s VPN security solutions.

  • Requirements�"Intel-based PC running Windows 2000 Server. Cisco IOS release 12.0(5)T or later.

  • Standards Supported�"The following standards are supported with this CA server: X.509 version 3, CRL version 2, PKCS #7, #10, and #12, and many more protocols.

For more information on Microsoft products and features, consult their web site at
www.microsoft.com.


545 times read

Related news

» Enrolling and Installing Certificates
by alperen posted on Nov 15,2009
» Simple Certificate Enrollment Protocol (SCEP)
by alperen posted on Sep 29,2009
» Simple Certificate Enrollment Protocol (SCEP)
by alperen posted on Nov 30,2009
» Operating System Requirements
by alperen posted on Aug 01,2009
» CAs and Digital Certificates
by alperen posted on Sep 25,2009
Did you enjoy this article?
(total 0 votes)

comment Comments (0 posted) 

More Top News
CCSP-Cisco Certified Security Professional
Most Popular
Most Commented
Featured Author