Displaying And Maintaining Pki; Pki Configuration Examples; Requesting A Certificate From A Ca Server Running Rsa Keon - HP A6600 Configuration Manual

Hide thumbs Also See for A6600:
Table of Contents

Advertisement

Displaying and maintaining PKI

To do...
Display the contents or request
status of a certificate
Display CRLs
Display information about one or
all certificate attribute groups
Display information about one or
all certificate attribute-based
access control policies

PKI configuration examples

CAUTION:
The SCEP add-on is required when you use the Windows Server as the CA. In this case, when
configuring the PKI domain, use certificate request from ra to specify that the entity requests a
certificate from an RA.
The SCEP add-on is not required when RSA Keon is used. In this case, when configuring a PKI
domain, use certificate request from ca to specify that the entity requests a certificate from a CA.

Requesting a certificate from a CA server running RSA Keon

Network requirements
The router submits a local certificate request to the CA server.
The router acquires the CRLs for certificate verification.
Figure 86 Request a certificate from a CA server running RSA Keon
Configuration procedure
Configure the CA server.
1.
# Create a CA server named myca.
Command...
display pki certificate { { ca |
local } domain domain-name |
request-status } [ | { begin |
exclude | include } regular-
expression ]
display pki crl domain domain-
name [ | { begin | exclude |
include } regular-expression ]
display pki certificate attribute-
group { group-name | all } [ | {
begin | exclude | include }
regular-expression ]
display pki certificate access-
control-policy { policy-name | all }
[ | { begin | exclude | include }
regular-expression ]
230
Remarks
Available in any view
Available in any view
Available in any view
Available in any view

Advertisement

Table of Contents
loading

Table of Contents