01-17-2013 10:38 AM - edited 03-07-2019 11:09 AM
hi ,
when i type sh run ,
crypto pki trustpoint TP-self-signed-1195085824
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-1195085824
revocation-check none
rsakeypair TP-self-signed-1195085824
!
!
crypto pki certificate chain TP-self-signed-145985085824
certificate self-signed 01
30820242 308201AB A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 31313935 30383538 3234301E 170D3933 30333031 30303032
30305A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 31393530
38353832 3430819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100C6C8 BBCFF212 8ECFA0E8 3F1B1CBC F214ED21 C0802E1F 980343BF AB37F3E7
8B854A24 FA0B9515 1AA4D2A0 F4E885AD 00B17601 8F101E6A 19A1FEBB FB623495
A99BFF84 4F073DA7 094431BA 99FBF75B 49E5A9EF 301D0603 551D0E04 160414A9
9BFF844F 073DA709 4431BA99 FBF75B49 E5A9EF30 0D06092A 864886F7 0D010104
05000381 8100269C F9EE3E34 D585BADD 5DE9C96D C8F4BEC8 DF1E0403 862801AE
A50FFF62 0B9CA586 4977650D 775A2411 3B3A23EC F9CAB292 C2933437 xxxxxx
85FCB65A 8E101E87 14899C81 6ED4A6E8 E6ADCA5C A3EFD0FB 08B79E2F A3EBF420
E0F56087 AE9D738B 02A8312A D189D49A 9C26064D 961B69A6 AA8A6B71 2FF0C55D
5EA05299 DC43
quit
!
===========================================
what does the above mean ???????
my device is cisco 2960
here is my sh ver :
==========================================
NS-Switch#sh version
Cisco IOS Software, C2960 Software (C2960-LANBASEK9-M), Version 12.2(55)SE1, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2010 by Cisco Systems, Inc.
Compiled Thu 02-Dec-10 08:16 by prod_rel_team
Image text-base: 0x00003000, data-base: 0x01800000
ROM: Bootstrap program is C2960 boot loader
BOOTLDR: C2960 Boot Loader (C2960-HBOOT-M) Version 12.2(44)SE5, RELEASE SOFTWARE (fc1)
NS-Switch uptime is 8 weeks, 2 days, 10 hours, 38 minutes
System returned to ROM by power-on
System restarted at 09:57:55 UTC Tue Dec 25 2012
System image file is "flash:/c2960-lanbasek9-mz.122-55.SE1.bin"
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
cisco WS-C2960G-24TC-L (PowerPC405) processor (revision A0) with 65536K bytes of memory.
Processor board ID FOC0949X0MD
Last reset from power-on
6 Virtual Ethernet interfaces
24 Gigabit Ethernet interfaces
The password-recovery mechanism is enabled.
64K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address : 00:16:47:3B:90:00
Motherboard assembly number : 73-10015-04
Power supply part number : 341-0098-01
Motherboard serial number : FOC094820Y6
Power supply serial number : AZS094404A8
Model revision number : A0
Motherboard revision number : A0
Model number : WS-C2960G-24TC-L
System serial number : FOC0949X0MD
Top Assembly Part Number : 800-26673-01
Top Assembly Revision Number : B0
Version ID : V01
CLEI Code Number : COM2300ARA
Hardware Board Revision Number : 0x01
Switch Ports Model SW Version SW Image
------ ----- ----- ---------- ----------
* 1 24 WS-C2960G-24TC-L 12.2(55)SE1 C2960-LANBASEK9-M
Configuration register is 0xF
=======================
final question ,
if i bought the ios from cisco , assume i paid iso 15 from 7200 routers ,
can it be used on another router ????
regards
01-17-2013 11:49 AM
Almost certainly the information about the self signed certificate is in your configuration because your configuration enables ip http secure-server.
HTH
Rick
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide