certificate. This key pair is then used for communication with DS and with CS. The other
key pair it receives from the Customer Server and uses it only for OpenVPN. This key pair
includes a certificate signed by
CS_CA.
Entity
Comes with in-
stallation
Created on start-
up
Comes after start-up
Router
DS_crt
Router_TLS_crt,
Router_TLS_key
Router_OVPN_crt,
Router_OVPN_key,
CS_CA_crt,
CS_TLS_crt
Customer Server
CS_CA_crt,
CS_CA_key,
CS_OVPN_crt,
CS_OVPN_key,
CS_TLS_crt,
CS_TLS_key,
CS_WEB_crt,
CS_WEB_key
DS_crt
Router_TLS_crt
Dispatch Server
DS_crt,
DS_key
CS_TLS_crt
Table 4.4: Placement of keys and certificates.
Do'stlaringiz bilan baham: