Cisco Preparative Procedures & Operational User Guide
© 2016 Cisco Systems, Inc. All rights reserved.
11)
Specify an optional password for the certificate request:
Firepower-chassis /security/keyring/certreq#
set password
password
12)
Specify the state or province in which the company requesting the certificate is headquartered:
Firepower-chassis /security/keyring/certreq#
set state
state
13)
Specify the fully qualified domain name of the FXOS chassis:
Firepower-chassis /security/keyring/certreq#
set subject-name
subject-name
14)
Commit the transaction:
Firepower-chassis /security/keyring/certreq#
commit-buffer
15)
Display the certificate request, which you can copy and send to a trust anchor or certificate authority:
Firepower-chassis /security/keyring/certreq#
show certreq
4.5.6.4
Creating a Trust Point
1)
Enter services mode:
Firepower-chassis#
scope security
2)
Create a trust point:
Firepower-chassis /security#
create trustpoint
name
3)
Specify certificate information for this trust point:
Firepower-chassis /security/trustpoint#
set certchain [
certchain
]
4)
Commit the transaction:
Firepower-chassis /security/trustpoint#
commit-buffer
4.5.6.5
Importing a Certificate into a Key Ring
1)
Enter services mode:
Firepower-chassis#
scope security
2)
Enter configuration mode for the key ring that will receive the certificate:
Firepower-chassis /security#
scope keyring
keyring-name
3)
Specify the trust point for the trust anchor or certificate authority from which the key ring certificate
was obtained:
Firepower-chassis /security/keyring#
set trustpoint
name