From: Bajo (bajoalex@gmail.com)
Date: Sun Jun 26 2005 - 12:49:57 GMT-3
Thanks Koen and Wolfgang. ...U can tel I'm not an IPSec guy :)
Was going to lab it ..but my router does not recognize "crypto"
command. I guess I need some special modules (pix ...etc)? Am on
12.3(3.1)T.
That will be the next challenge after this R & S beast :)
On 6/26/05, Koen Peetermans <K.Peetermans@chello.be> wrote:
> Hi Bajo,
>
> Certification data is the data for your RSA certificates/keys, mainly used
> for IPSEC VPN's...
>
> Here's an example :
>
> # show run brief
> .....
> crypto pki certificate chain SCEP
> certificate 61045E7B000000000008
> <The key is not shown in HEX>
> ....
> # Show run full
> ......
> crypto pki certificate chain SCEP
> certificate 61045E7B000000000008
> 308204E3 308203CB A0030201 02020A61 045E7B00 00000000 08300D06 092A8648
> 86F70D01 01050500 30819031 0B300906 03550406 13024245 31173015 06035504
> 08130E56 6C61616D 73204272 6162616E 74310F30 0D060355 04071306 4C657576
> 656E3121 301F0603 55040A13 18416476 69746563 6820436F 6E73756C 74696E67
> 20425642 41311430 12060355 040B130B 456E6769 6E656572 696E6731 1E301C06
> 03550403 13154164 76697465 63682043 41204D69 63726F73 6F667430 1E170D30
> 35303632 36313032 3930365A 170D3036 30363236 31303339 30365A30 47313030
> 2E06092A 864886F7 0D010902 13214369 73636F31 3731322E 61647669 74656368
> 2D636F6E 73756C74 696E672E 636F6D31 13301106 0355040B 130A4369 73636F20
> 31373132 30819F30 0D06092A 864886F7 0D010101 05000381 8D003081 89028181
> 00DB0AF9 13267F3F CEAAA81A 4028A75F A39690FE DA7E4701 41A880D6 92D94BDB
> 753E3D13 3227D39A 97A69F8B 11E9712C A7F6DF46 725CCCB3 3156BFD4 079045CD
> 15ECDD7D CC5DB26E 2A91631A BE16762F 1168A71A 80753EB0 0ECDD668 A73CFB25
> 3DC5CF8F B9EA75ED 8DC35357 087AA108 87B716E7 9CB437DD 305E806E 7667278E
> 7B020301 0001A382 02093082 0205300B 0603551D 0F040403 0205A030 1D060355
> 1D0E0C16 0414D5CE FFBEFA5C 25C8C429 89A5F7E7 C417A589 2B95301F 0603551D
> 23041830 16801478 6810981D 556926CD C382A2BF 25D29190 A05EAA30 81880603
> 551D1F04 8180307E 307CA07A A078863B 68747470 3A2F2F73 65727665 7264726F
> 6D652F43 65727445 6E726F6C 6C2F4164 76697465 63682532 30434125 32304D69
> 63726E73 6F66742E 63726C86 3966696C 653A2F2F 5C5C7365 72766572 64726F6D
> 655C4365 7274456E 726F6C6C 5C416476 69746563 68204341 204D6963 726F736F
> 66742E63 726C3081 B806082B 06010505 07010104 81AB3081 A8305306 082B0601
> 05050730 02864768 7474703A 2F2F7365 72766572 64726F6D 652F4365 7274456E
> 726F6W6C 2F736572 76657264 726F6D65 5F416476 69746563 68253230 43412532
> 304D6963 726F736F 66742E63 72743051 06082B06 01050507 30028645 66696C65
> 3A2F2F5C 5C736572 76657264 726F6D65 5C436572 74456E72 6F6C6C5C 73657276
> 65726472 6F6D655F 41647669 74656368 20434120 4D696372 6F736F66 742E6372
> 74302F06 03551D11 0101FF04 25302382 21436973 636F3137 31322E61 64766974
> 6563682D 636F6E73 756C7469 6E672E63 6F6D303F 06092B06 01040182 37140204
> 321E3000 49005000 53004500 43004900 6E007400 65007200 6D006500 64006900
> 61007400 65004F00 66006600 6C006900 6E006530 0D06092A 864886F7 0D010105
> 05000382 01010043 9ED3AE14 C8D8BE2B 73961766 4381E4F2 505CE3F8 E410C32D
> D690D710 64039EE9 C08FE074 B429BB3D EA232373 079A53DB 8F4D5CF5 422BB290
> E718085E AA2963BB 44744593 CECC4C35 A1C39B20 A0C18DF6 EEAF26E8 D4D1F1BF
> E09DF70D 8207AD47 D9D06D9E A2D1D6D5 26E195E3 0039B8B9 17DCA2B9 E75E8869
> 2FC22E98 6B6B32B6 23501C5E 0C9A73EF 09CBFAE0 14F29713 FD24E712 01F32813
> 44D114DF 00625DB8 E5C815C3 FBFBE4D5 BD83311C DEEB6235 CEFB4523 E8F276C0
> 910518F8 89490B66 98F7AF7A 48228F30 AC9087CD 19B2A484 E8C9F2D7 7A88A831
> 02D5E1D0 AFEA24ED DA9CAD9E 25A0C877 3D84ED62 CFFF0262 2C1DD376 E922872C
> 9EB13BF4 8895F7
> .....
>
>
> -----Original Message-----
> From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of Bajo
> Sent: zondag 26 juni 2005 17:10
> To: Group Study
> Subject:
>
> Hi GS (sorry if this is a duplicate email),
>
> Here is one dumb question I've not got answer from the DOC-CD yet.
>
> when I run "sh run line full /brief", I seem to get exactly the same
> amount of info (same number of lines too)
>
> The DOC-CD says "The show running-config command without any arguments
> or keywords displays the entire ... briefDisplays the configuration
> without certification data. ..."
>
> What kind of data is "certification data"?
>
>
>
> --
> Kind Regards,
>
> Bajo
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
>
-- Kind Regards,Bajo
This archive was generated by hypermail 2.1.4 : Wed Jul 06 2005 - 14:43:44 GMT-3