
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Public
BRKNMS-2784_c1
7
Required Bootstrap Configuration
Cisco IOS Software Device
Configuration for Secure Mode of Operation
crypto ca trustpoint corp.abc.com
enrollment mode ra
enrollment url ftp://<ftp-user>:<ftp-password>@<cert-
server>/<signed-certificate>.crt
usage ssl-client
revocation-check none
!
crypto ca authenticate corp.abc.com
!
cns password <challenge-password>
!
cns trusted-server all-agents <CCE-Server>
cns id hardware-serial
cns id hardware-serial event
cns id hardware-serial image
cns event <CCE-Server> encrypt <Event Gateway Port>
keepalive 60 3
cns config initial <CCE-Server> encrypt 443 inventory
!
cns image server https:// <CCE-Server>:443/cns/
HttpMsgDispatcher status
https:// <CCE-Server> :443/cns/HttpMsgDispatcher
!
cns inventory
transport event
announce config
cns exec encrypt 443
What is a Bootstrap
Configuration?
Bootstrap configuration is
initial set of dynamic startup
configuration commands
• Specific to the customer
• Service, location, etc., agnostic
Kommentare zu diesen Handbüchern