Crypto X509 Ocsp - Dell S6100 Configuration Manual

Hide thumbs Also See for S6100:
Table of Contents

Advertisement

crypto x509 ocsp

Configures the OCSP behavior.
Syntax
crypto x509 ocsp [nonce] [sign-requests]
Parameters
nonce
sign-requests
Defaults
NA.
Command Modes
CONFIGURATION
Command History
This guide is platform-specific. For command information about other platforms, see the relevant Dell Networking
OS Command Line Reference Guide.
The following is a list of the Dell Networking OS version history for this command:
Version
9.11.0.0
Usage Information
The following RBAC roles are allowed to issue this command:
Related Commands
crypto x509 revocation
Configure the revocation check behavior for the certificate.
Syntax
crypto x509 revocation ocsp {accept | reject}
Parameters
ocsp
accept
Enter the keyword nonce to use the nonce feature for the OCSP requests to OCSP
responder communication. This is a one-time value that must be returned in the OCSP
response. If the OCSP responder is using precomputed responses, then it does not reply
with the nonce. The nonce feature is off by default. The no version of the command
disables the nonce feature.
Enter the keyword sign-requests to sign the OCSP requests to OCSP responder
communication with the system's own certificate so that the OCSP responder may verify
the requestor. The sign-requests feature is off by default. The no version of the command
disables signing of requests.
Description
Introduced the command.
sysadmin
secadmin
crypto ca-cert install
crypto cert generate
crypto cert install
Enter the method used to check certificate revocation details. In this release, OCSP is the
only option that is supported. So, you can specify OCSP as the method-list value.
Enter the keyword accept to accept the presented certificate and log in if OCSP
retrieval fails.
X.509v3
1737

Advertisement

Table of Contents
loading

Table of Contents