Axis Communications C3003-E Car Speaker User Manual


 
AXIS C3003-E Network Speaker
System Options
In Axis implementation, the Axis product and the authentication server identify themselves with digital certicates using EAP-TLS
(Extensible Authentication Protocol - Transport Layer Security). The certicates are provided by a Certication Authority (CA).
You need:
a CA certicate to authenticate the authentication server.
a CA-signed client certicate to authenticate the Axis product.
To create and install certicates, go to System Options > Security > Certicates. See Certicates on page 23. Many CA certicates
are preinstalled.
To allow the product to access a network protected by IEEE 802.1X:
1. Go to System Options > Security > IEEE 802.1X.
2. Select a CA Certicate and a Client Certicate from the lists of installed certicates.
3. Under Settings, select the EAPOL version and provide the EAP identity associated with the client certicate.
4. Check the box to enable IEEE 802.1X and click Save.
Note
For authentication to work properly, the date and time settings in the Axis product should be synchronized with an NTP
server. See Date & Time on page 24.
Certicates
Note
Installed certicates, except preinstalled CA certicates, will be deleted if the product is reset to factory default. Preinstalled
CA certicates that have been deleted will be reinstalled.
A Server/Client certicate can be self-signed or issued by a Certicate Authority (CA). A self-signed certicate offers limited
protection and can be used before a CA-issued certicate has been obtained.
To install a self-signed certicate:
1. Go to Setup > System Options > Security > Certicates.
2. Click Create self-signed certicate and provide the requested information.
To create and install a CA-signed certicate:
1. Create a self-signed certicate as described above.
2. Go to Setup > System Options > Security > Certicates.
3. Click Create certicate signing request and provide the requested information.
4. Copy the PEM-formatted request and send to the CA of your choice.
5. When the signed certicate is returned, click Install certicate and upload the certicate.
Server/Client certicates can be installed as Certicate from signing request or as Certicate and private key. Select Certicate
and private key if the private key is to be upload as a separate le or if the certicate is in PKCS#12 format.
The Axis product is shipped with several preinstalled CA certicates. If required, additional CA certicates can be installed:
1. Go to Setup > System Options > Security > Certicates.
2. Click Install certicate and upload the certicate.
23