Updating an SSL Certificate

By default, the following values are used for an open SSL certificate. Generating a self-signed certificate with the crypto-ssl certificate generate command produces a certificate populated with the same default values. You are not prompted to fill in the information during the certificate generation process.

  • Country = US
  • State = California
  • Locality = Santa Clara
  • Org = Brocade Communications Systems
  • Org unit = Brocade Communications Systems
  • Common Name = www.brocade.com

If you update any of the certificate values, they will not be changed in the certificate until after you generate the certificate again using the crypto-ssl certificate generate command.

The configuration steps in the following task are optional and can be performed in any order to update an SSL certificate stored in the RUCKUS ICX device..

  1. Enter global configuration mode.
    device# configure terminal
    device(config)#
  2. (Optional) Modify the organization's common name (URL).
    device(config)# ip ssl certificate common-name www.ruckus.com
  3. (Optional) Update the country of operation.
    device(config)# ip ssl certificate country US
  4. (Optional) Update the locality.
    device(config)# ip ssl certificate locality Sunnyvale
  5. (Optional) Update the organization name.
    device(config)# ip ssl certificate org Ruckus
  6. (Optional) Update the name of the organizational unit.
    device(config)# ip ssl certificate org-unit Mgmt
  7. (Optional) Update the state.
    device(config)# ip ssl certificate state California
  8. Regenerate the certificate to include the updates.
    device(config)# crypto-ssl certificate generate

The following example updates the name of the organization, the organizational unit, and the common name (URL) of the company and regenerates the digital certificate on an ICX device.

device# configure terminal
device(config)# ip ssl certificate org Ruckus
device(config)# ip ssl certificate org-unit Mgmt
device(config)# ip ssl certificate common-name www.ruckus.com
device(config)# crypto-ssl certificate generate