
8-8
Cisco Wireless LAN Controller Configuration Guide
OL-13826-01
Chapter 8 Managing Controller Software and Configurations
Transferring Files to and from a Controller
Transferring Files to and from a Controller
Controllers have built-in utilities for uploading and downloading various files. Follow the instructions
in these sections to import files using either the controller GUI or CLI:
• Downloading Device Certificates, page 8-8
• Downloading CA Certificates, page 8-10
• Uploading PACs, page 8-12
• Uploading and Downloading Configuration Files, page 8-14
Downloading Device Certificates
Each wireless device (controller, access point, and client) has its own device certificate. For example,
the controller is shipped with a Cisco-installed device certificate. This certificate is used by EAP-FAST
(when not using PACs), EAP-TLS, PEAP-GTC, and PEAP-MSCHAPv2 to authenticate wireless clients
during local EAP authentication. However, if you wish to use your own vendor-specific device
certificate, it must be downloaded to the controller.
Note See the “Configuring Local EAP” section on page 5-23 for information on configuring local EAP.
Follow the instructions in this section to download a vendor-specific device certificate to the controller
through the GUI or CLI. However, before you begin, make sure you have a TFTP server available for the
certificate download. Keep these guidelines in mind when setting up a TFTP server:
• If you are downloading through the service port, the TFTP server must be on the same subnet as the
service port because the service port is not routable, or you must create static routes on the
controller.
• If you are downloading through the distribution system network port, the TFTP server can be on the
same or a different subnet because the distribution system port is routable.
• A third-party TFTP server cannot run on the same computer as the Cisco WCS because the WCS
built-in TFTP server and the third-party TFTP server require the same communication port.
Note All certificates downloaded to the controller must be in PEM format.
Using the GUI to Download Device Certificates
Follow these steps to download a device certificate to the controller using the controller GUI.
Step 1 Copy the device certificate to the default directory on your TFTP server.
Step 2 Click Commands > Download File to open the Download File to Controller page (see Figure 8-2).
Komentáře k této Příručce