Export an RSA Key

The keys utilized by a controller, service platform or access point can be exported to an external resource for archive and future use.

Export the key to a redundant RADIUS server to import it without generating a second key. If there‘s more than one RADIUS authentication server, export the certificate and don‘t generate a second key unless you want to deploy two root certificates.

To export an RSA Key:

  1. Select Export from the Certificate Management → RSA Keys screen.
    The Export RSA Key window displays.
    Click to expand in new window
    Certificate Management - Export RSA Key Screen
    GUID-01E01ACC-F590-424A-9357-23CF9431C8FC-low.png

    Export the key to a redundant RADIUS server to import it without generating a second key. If there's more than one RADIUS authentication server, export the certificate and don't generate a second key unless you want to deploy two root certificates.

  2. Define the following configuration parameters required for the Export of the RSA key.
    Key Name Enter the 32-character maximum name assigned to the RSA key.
    Key Passphrase Define the key used by both the controller or service platform and the server. Click Show expose the actual characters used in the passphrase. When Show is not selected, the passphrase displays as a series of asterisks (****).
    URL Provide the complete URL to the location of the key. If needed, click Advanced to expand the dialog to display network address information to the location of the target key. The number of additional fields that populate the screen is dependent on the selected protocol.
    Protocol Select the protocol used for exporting the RSA key. Available options include:
    • tftp
    • ftp
    • sftp
    • http
    • cf
    • usb1-4
    Port Set the port. This option is not valid for cf and usb1-4.
    Host Provide the hostname string or numeric IP address of the server used to export the RSA key. Hostnames cannot include an underscore character. This option is not valid for cf and usb1-4.

    Select IPv4 Address to use an IPv4 formatted address as the host. Select IPv6 Address to use an IPv6 formatted address as the host. IPv6 provides enhanced identification and location information for computers on networks routing traffic across the Internet. IPv6 addresses are composed of eight groups of four hexadecimal digits separated by colons.

    Path/File Specify the path to the key. Enter the complete relative path to the key on the server.
  3. Select OK to export the defined RSA key. Select Cancel to revert the screen to its last saved configuration.