Describes how CA interoperability enables communication between certification authorities, outlining configuration steps, supported protocols, and trust establishment to facilitate secure certificate management in multi-CA environments.
A certification authority interoperability capability is a security feature that
-
enables Cisco IOS XR devices to use digital certificates for secure communication
-
supports certificate-based trust across IPSec, SSL, and SSH protocols, and
-
allows devices and certification authorities (CAs) to interact for efficient certificate management and scalable security.
Certification authority (CA) interoperability allows devices and CAs to communicate, permitting retrieval and use of digital certificates in network deployments. While IPSec can operate without a CA, using a CA improves manageability and scalability for IPSec.
IPSec is not currently supported.