![](https://pdfstore-manualsonline.prod.a.ki/pdfasset/9/e9/9e9e0a2b-b684-4441-bbdf-ba62ad355025/9e9e0a2b-b684-4441-bbdf-ba62ad355025-bg70.png)
7-2
Configuration Guide for Cisco Secure ACS 4.2
OL-14390-02
Chapter 7 PEAP/EAP-TLS Configuration Scenario
Step 1: Configure Security Certificates
Obtain Certificates and Copy Them to the ACS Host
To use EAP-TLS, you must obtain and install security certificates.
To copy a certificate to the ACS host:
Step 1 Obtain a security certificate.
Step 2 Create a \Certs directory on the ACS server.
a. Open a DOS command window.
b. To create a certificates directory, enter:
mkdir <selected_drive>:\Certs
where selected_drive is the currently selected drive.
Step 3 Copy the following files to the \Certs directory:
• server.cer (server certificate)
• server.pvk (server certificate private key)
• ca.cer (CA certificate)
Run the Windows Certificate Import Wizard to Install the Certificate
To run the Windows Certificate Import wizard to install the certificate on the server:
Step 1 Start Windows Explorer.
Step 2 Go to <selected_drive>:\Certs.
where selected_drive is the currently selected drive.
Step 3 Double-click the \Certs\ca.cer file.
The Certificate dialog appears.