Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Dell EMC SmartFabric OS10 User Guide Release 10.5.1

PDF

Establish TLS connection

  • Generate the switch and controller certificates from a server that supports public-key infrastructure (PKI). You need the following certificates:
    • Controller certificate
    • Switch certificate
    • Private key file to verify the switch certificate
  • The certificates and private key files must be in the Privacy-Enhanced Mail (PEM) format.

For certificate-based authentication, you must establish a TLS connection between the switch and the controller before you configure OpenFlow on the switch. The following procedure explains how to install the controller and switch certificates on the OS10 switch. Refer to the controller documentation for information on how to install the certificates on the controller.

NOTE: This procedure is optional. Use this procedure if you want to configure certificate-based authentication between the switch and the controller.
  1. Log in to the OS10 switch with administrator credentials.
  2. Enter the following command to copy the certificates to the OS10 switch.

    In the following commands, the destination path and the destination file name on the OS10 switch, for example, config://../openflow/cacert.pem, remain the same in your deployment. Ensure that you enter the destination path and destination file names as specified in the following example:

    OS10# copy scp://username:password@server-ip/full-path-to-the-certificates/controller-cert.pem config://../openflow/cacert.pem
    OS10# copy scp://username:password@server-ip/full-path-to-the-certificates/switch-cert.pem config://../openflow/sc-cert.pem
    OS10# copy scp://username:password@server-ip/full-path-to-the-certificates/switch-privkey.pem config://../openflow/sc-privkey.pem

    where server-ip refers to the server where you have stored the certificates, and username and password refers to the credentials you need to access the server with the certificates.

  3. Perform the steps described in the Configure OpenFlow protocol on the switch topic to configure OpenFlow.

Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\