Table of Contents

Overview of PKI in Junos OS
Introduction to PKI in Junos OS
Fundamentals of the PKI
PKI Applications Overview
Components for Administering PKI in Junos OS
Basic Elements of PKI in Junos OS
Certificate Life Cycle Management Overview
Generation of Public/Private Keys, Identity Information, and Certificate Request
Certificate Enrollment
Certificate Identity Usage Within IKE
Certificate Validation and Revocation Checking
Certificate Renewal
Certificate Administration Overview
Overview on Usage of SSL and IPsec/IKE Methods
Process for Setting Up the PKI Elements
Choosing the IKE Identity to Use in the VPN and the Certificate
Certificate Validation During the IKE Phase 1 Setup
Unsupported PKI Protocols in Junos OS
Configuring, Verifying, and Troubleshooting the PKI in Junos OS
Example: Configuring the PKI in Junos OS
Verifying the PKI Configuration
Appendixes
Appendix A: Frequently Asked Questions
Appendix B: Administering Common Certificate Authorities
Certificate Authorities Overview
Microsoft Windows 2000 Certificate Authority
OpenSSL CA Overview
OpenSSL.cfg File Sample
Appendix C: DoD PKI Usage
DoD PKI Introduction
DoD PKI Setup
Setting Up IKE Using DoD PKI Certificates
Appendix D: Simple Certificate Enrollment Protocol
Glossary of PKI Related Terms