Step 4

Configure the CA trustpoint. Now that you have verified connectivity with the CA server, you simply need to designate the CA server using the crypto ca trustpoint command, and then define the enrollment URL and mode:

NewYork(config)#crypto ca trustpoint CA-Server

NewYork(ca-trustpoint)#enrollment url http://CA-Server/certserv/mscep/mscep.dll

NewYork(ca-trustpoint)#enrollment mode ra


