Forum Discussion

amolari's avatar
amolari
Icon for Cirrus rankCirrus
Jan 04, 2016

Certificate management, key security-type

hi

 

Anyone knows what the Security-Type (by import of a key) "Password" is for?

 

Made some tests importing password-protected and not-protected keys and selecting normal/password results in no difference.

 

Thanks

 

Alex

 

3 Replies

  • EL's avatar
    EL
    Icon for Nimbostratus rankNimbostratus
    Hi Alex, do you already know the answer? I also see no different so far from my testing.
  • nathe's avatar
    nathe
    Icon for Cirrocumulus rankCirrocumulus
    Is it to distinguish a non-FIPS key from a FIPS key, if you have a FIPS card in the bigip?
  • Generally on BIGIP there are four security-type for the SSL key (depending on what modules you have). The security-type specifies the type of security used to handle or store the key.

     

    normal: The key resides in a standard form on the file-system. This is the default value.

     

    fips: The key is protected by a FIPS device on the system and is only applicable to devices with FIPS support

     

    password: Specifies that the key is protected by a passphrase and stored in encrypted form.

     

    nethsm: The key is protected by a FIPS device outside the system.