A
- admin page
- agency compliance
- alarms
- antenna
- mounting
- mounting conditions 1, 2
- mounting requirements
B
C
- clear alarm command
- clear authlog command
- clear daemon log command
- clear eventlog command
- clear ptp-stat command
- clear syslog command
- CLI 1
- commands
- backup scp
- backup tftp
- clear alarm
- clear authlog
- clear daemon log
- clear eventlog
- clear ptp-stat
- clear syslog
- config 1/5MHz
- config accounting
- config accounting-level
- config accounting-server add
- config accounting-server del
- config alarm-email-receiver
- config alarm-profile
- config antenna-cable-delay-compensation
- config antenna-voltage
- config auth-order
- config change-password
- config cli-banner-file
- config cli-banner-text
- config cli-timeout
- config datetime
- config dns0
- config dns1
- config domain
- config dst
- config e1 output loopback
- config e1 output port
- config enable-password
- config eth0 auto-nego
- config eth0 duplex
- config eth0 ip
- config eth0 ip-mode
- config eth0 speed
- config gps anti-jamming
- config holdover-state
- config hostname
- config language
- config password
- config pps-squelch
- config ppx
- config primary-ptp-server
- config ptp add server
- config ptp slave
- config radius-server add
- config radius-server del
- config secondary-ptp-server
- config snmp contact
- config snmp readonly-community
- config snmp readwrite-community
- config snmp-trap add
- config snmp-trap del
- config snmp-v3user add
- config snmp-v3user del
- config snr
- config ssl-cert
- config ssl-key
- config sync-src-priority
- config timezone
- config unsecured-communication-protocols
- config user add
- config user class
- config user del
- config user password
- config web
- config web-mode
- config web-timeout
- ftp
- halt
- ping
- reboot
- reset config
- reset password
- restart ptp
- restart timeprobe-agent
- restore scp
- restore tftp
- save scp authlog
- save scp daemonlog
- save scp eventlog
- save scp syslog
- save tftp authlog
- save tftp daemonlog
- save tftp eventlog
- save tftp syslog
- scp
- tftp
- tftp license
- compliance
- config 1/5/10MHz command
- config accounting
- config accounting-level
- config accounting-server add
- config accounting-server del
- config alarm-email-receiver command
- config alarm-profile command
- config antenna-cable-delay-compensation command
- config antenna-voltage command
- config auth-order
- config change-password
- config cli-banner-file
- config cli-banner-text
- config cli-timeout command
- config datetime command
- config dns0 command
- config dns1 command
- config domain command
- config dst command
- config e1 output loopback command
- config e1 output port command
- config enable-password command
- config eth0 auto-nego command
- config eth0 duplex command
- config eth0 ip command
- config eth0 ip-mode command
- config eth0 speed command
- config gps anti-jamming command
- config holdover-state
- config hostname command
- config language command
- config page
- config password command
- config pps-squelch
- config ppx command
- config primary-ptp-server command
- config ptp add server command
- config ptp slave command
- config ptp slv disable command
- config ptp slv domain command
- config ptp slv dscp command
- config ptp slv enable command
- config ptp slv profile command
- config ptp unicast acc-master add command
- config ptp unicast acc-master del command
- config ptp unicast announce command
- config ptp unicast delay command
- config ptp unicast duration command
- config ptp unicast signaling command
- config ptp unicast sync command
- config radius-server add
- config radius-server del
- config secondary-ptp-server command
- config snmp contact command
- config snmp readonly-community command
- config snmp readwrite-community command
- config snmp-trap add command
- config snmp-trap del command
- config snmp-v3user add command
- config snmp-v3user del command
- config snr command
- config ssl-cert command
- config ssl-key command
- config sync-src-priority command
- config timezone command
- config unsecured-communication-protocols command
- config user add
- config user class
- config user del
- config user password
- config web command
- config web-mode command
- config web-timeout command
- console cable
- conventions
- customer support 1, 2
D
E
- e-mail lists
- elements
- EMC testing
- enable mode password
- environmental specifications
- event states
F
- factory defaults
- ftp command
G
- graphical user interface
H
- halt command
- hardware
- height
- humidity
I
- input voltage
- installation instructions
- installation requirements
- IP address
K
L
- log page
- login class
- changing by Admin user
- login page
M
N
P
- parameters
- password
- physical dimensions
- ping command
- port LEDs
- power
- PTP
R
S
- safety testing
- save scp authlog command
- save scp daemonlog command
- save scp eventlog command
- save scp syslog command
- save tftp authlog command
- save tftp daemonlog command
- save tftp eventlog command
- save tftp syslog command
- scp command
- SNMPv3
- software
- specifications
- SSH
- status page
- support
- support, technical See technical support
- system LEDs
T
U
- unpacking the chassis
- upgrading See software
- user account
- admin password changing
- admin password reset
- creating Read-Only user
- creating Read/Write user
- deleting Read-Only user
- deleting Read/Write user
- guidelines
- management
- modifying
- overview
- Read-Only user password changing by Admin user
- Read/Write user password changing by Admin user
- Read/Write user password changing by Read/Write user
- user interface
W
Dynamic SSL Certificate Overview
The TCA 6000 or 6500 Timing Client enables you to access the GUI through Hypertext Transfer Protocol (HTTP) or Hypertext Transfer Protocol over Secure Sockets Layer (HTTPS) based on the web mode configured by the Admin user. The Admin user can configure the Timing Client to use the customized key and certificate instead of the default key and certificate, when the GUI is accessed through HTTPS. By default, the Timing Client uses the default key and certificate when the GUI is accessed through HTTPS.
The Admin user can download the customized key and certificate files of .pem format in the Timing Client through CLI or GUI. The downloaded key file is stored as an ssl_key.pem file in the etc/config path. The downloaded certificate file is stored as an ssl_cert.pem file in the etc/config path. The Admin user can generate the customized files by using OpenSSL or FIPS 140-2 capable OpenSSL as trusted certification authority. For complete information and source of OpenSSL utility, see http://www.openssl.org/.
When you access the GUI through HTTPS, the Timing Client checks for the ssl_key.pem and ssl_cert.pem files in the etc/config path. If any one of the files is not available, the Timing Client uses the default key and certificate. If the files are available, the Timing Client checks the BEGIN header and the END footer in both the files. If the header and footer are valid in both the files, the Timing Client compares the key file with the certificate file. On successful match, the Timing Client loads the GUI and generates a syslog.
The Timing Client does not load the GUI but generates a syslog during the following scenarios:
- Mismatch identified between the key and certificate files.
- Invalid header or footer identified in one of the files.
- Validity of any file got expired.
The Admin user must keep the following conditions in mind when downloading the customized files:
- After downloading both the files, you must reboot the Timing Client for the changes to take effect.
- The Timing Client uses the default key and certificate if both or any one of the customized files is unavailable.
- You cannot modify the downloaded files but you can replace them with another ones.
- You should use only Secure Hash Algorithm (SHA-1) and RSA (1024 bits) cryptographic algorithms while generating the customized key and certificate files.