Use the public key infrastructure (PKI) for secure data exchange, identity verification, and mutual authentication by using digital certificates.
| Feature hierarchy | Feature Name |
|---|---|
| Public Key Infrastructure (PKI) / | Auto-reboot |
| Public Key Infrastructure (PKI) / | Automatic generation of self-signed certificates |
| Public Key Infrastructure (PKI) / | Automatic reenrollment support for IPSec digital certificates before expiration |
| Public Key Infrastructure (PKI) / | CRL update at user-specified interval |
| Public Key Infrastructure (PKI) / | Certificate - Configure local certificate sent to peer |
| Public Key Infrastructure (PKI) / | Certificate - Configure requested CA of peer certificate |
| Public Key Infrastructure (PKI) / | Certificate - Encoding: PKCS7 |
| Public Key Infrastructure (PKI) / | Certificate - Encoding: X509 |
| Public Key Infrastructure (PKI) / | Certificate - RSA signature |
| Public Key Infrastructure (PKI) / | Certificate Enrollment |
| Public Key Infrastructure (PKI) / | Certificate Revocation Lists/Certificate revocation checks |
| Public Key Infrastructure (PKI) / | Certificate chaining |
| Public Key Infrastructure (PKI) / | Configure subject alt-name: e-mail, IP, FQDN fields |
| Public Key Infrastructure (PKI) / | Configure subject name for certificates: CN, OU, O, L, ST, C, e-mail, and DC fields |
| Public Key Infrastructure (PKI) / | DSA Public/Private key-pair (512,1024,2048) |
| Public Key Infrastructure (PKI) / | Digital certificate validation |
| Public Key Infrastructure (PKI) / | Dynamic Update of Default Trusted CA Bundle |
| Public Key Infrastructure (PKI) / | Encoding types for Certificate installation |
| Public Key Infrastructure (PKI) / | Manual enrollment with PKCS10 file |
| Public Key Infrastructure (PKI) / | Manual installation - DER-encoded |
| Public Key Infrastructure (PKI) / | Manual installation - PEM-encoded |
| Public Key Infrastructure (PKI) / | Manual key management |
| Public Key Infrastructure (PKI) / | Online Certificate Status Protocol (OCSP) |
| Public Key Infrastructure (PKI) / | Online certificate revocation list (CRL) retrieval through LDAP and HTTP |
| Public Key Infrastructure (PKI) / | Online retrieval - HTTP |
| Public Key Infrastructure (PKI) / | Online retrieval - LDAP |
| Public Key Infrastructure (PKI) / | PKI over IPv6 |
| Public Key Infrastructure (PKI) / | PKI usability enhancements |
| Public Key Infrastructure (PKI) / | PKI-based link encryption |
| Public Key Infrastructure (PKI) / | PKI: Automatic certificate re-enrollment: SCEP |
| Public Key Infrastructure (PKI) / | PKI: Automatic local certificate re-enrollment: SCEP |
| Public Key Infrastructure (PKI) / | PKI: CA profile: Routing instance |
| Public Key Infrastructure (PKI) / | PKI: CA profile: Source address |
| Public Key Infrastructure (PKI) / | PKI: CRL: Disable verification on CRL download failure |
| Public Key Infrastructure (PKI) / | PKI: Certificate format: DER |
| Public Key Infrastructure (PKI) / | PKI: Certificate format: PEM |
| Public Key Infrastructure (PKI) / | PKI: Certificate request generation |
| Public Key Infrastructure (PKI) / | PKI: Certificate revocation per CA: CRL |
| Public Key Infrastructure (PKI) / | PKI: Certificate revocation per CA: OSCP |
| Public Key Infrastructure (PKI) / | PKI: DES encryption |
| Public Key Infrastructure (PKI) / | PKI: Export key pair: DER |
| Public Key Infrastructure (PKI) / | PKI: Export key pair: PEM |
| Public Key Infrastructure (PKI) / | PKI: Export local certificate: DER |
| Public Key Infrastructure (PKI) / | PKI: Export local certificate: PEM |
| Public Key Infrastructure (PKI) / | PKI: HTTP web proxy support |
| Public Key Infrastructure (PKI) / | PKI: Key pair and size: ECDSA 256 |
| Public Key Infrastructure (PKI) / | PKI: Key pair and size: ECDSA 384 |
| Public Key Infrastructure (PKI) / | PKI: Key pair and size: ECDSA 521 |
| Public Key Infrastructure (PKI) / | PKI: Key pair and size: RSA 2048 |
| Public Key Infrastructure (PKI) / | PKI: Load CA certificate from file |
| Public Key Infrastructure (PKI) / | PKI: Load CRL from file |
| Public Key Infrastructure (PKI) / | PKI: Load local certificate from file |
| Public Key Infrastructure (PKI) / | PKI: Local certificate enrollment: SCEP |
| Public Key Infrastructure (PKI) / | PKI: Manual certificate re-enrollment |
| Public Key Infrastructure (PKI) / | PKI: OSCP: Disable revocation check for received CA certificate |
| Public Key Infrastructure (PKI) / | PKI: OSCP: Disable revocation check when connection fails |
| Public Key Infrastructure (PKI) / | PKI: OSCP: Fallback to CRL when connection fails |
| Public Key Infrastructure (PKI) / | PKI: Private key pair generation |
| Public Key Infrastructure (PKI) / | PKI: SCEP digest: SHA-1 hash |
| Public Key Infrastructure (PKI) / | PKI: SCEP digest: SHA-256 hash |
| Public Key Infrastructure (PKI) / | PKI: SCEP digest: SHA-384 hash |
| Public Key Infrastructure (PKI) / | PKI: SCEP digest: md5 hash |
| Public Key Infrastructure (PKI) / | PKI: Self-signed certificate generation: PKCS10 format |
| Public Key Infrastructure (PKI) / | PKID SSL support services |
| Public Key Infrastructure (PKI) / | Peer certificate revocation check |
| Public Key Infrastructure (PKI) / | Peer certificate verification (signature and validity period) |
| Public Key Infrastructure (PKI) / | RSA Public/Private key-pair (1024, 2048, 4096) |
| Public Key Infrastructure (PKI) / | Self-signed digital certificates for enabling SSL services |
| Public Key Infrastructure (PKI) / | Separation of Administrative Roles (Cryptographic/Audit/Security) |
| Public Key Infrastructure (PKI) / IPSec VPN Control Plane / | Passive mode tunneling support |
| Public Key Infrastructure (PKI) / IPSec VPN Data Plane / | PKI notifications support for CMPv2 protocol with the jsd process |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate Authorities (CAs) |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate authorities: Baltimore |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate authorities: Entrust, Microsoft, and Verisign |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate authorities: Microsoft |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate authorities: Netscape |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate authorities: RSA Keon |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate authorities: Verisign |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate authority configuration |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate authority enrollment: CMPv2 |
| Public Key Infrastructure (PKI) / PKI: Certificate authorities / | PKI: Certificate authority enrollment: SCEP |