Public-Key Dsa - HP MSR Series Command Reference Manual

Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

Subject:
Verify result: OK
Related commands
crl check
pki domain

public-key dsa

Use public-key dsa to specify a DSA key pair for certificate request.
Use undo public-key to remove the configuration.
Syntax
public-key dsa name key-name [ length key-length ]
undo public-key
Default
No key pair is specified.
Views
PKI domain view
Predefined user roles
network-admin
Parameters
name key-name: Specifies a key pair by its name, a case-insensitive string of 1 to 64 characters, which
can include only letters, digits, and hyphen (-).
length key-length: Specifies the key length, in bits. In non-FIPS mode, the value range is 512 to 2048, and
the default is 1024. In FIPS mode, the value must be 2048. A longer key means higher security but more
public key calculation time.
Usage guidelines
You can specify a nonexistent key pair in this command. A key pair can be obtained in any of the
following ways:
Use the public-key local create command to generate a key pair.
An application, like IKE using digital signature authentication, triggers to generate a key pair
Use the pki import command to import a certificate containing a key pair.
A PKI domain can have key pairs using only one type of cryptographic algorithm (DSA or RSA).
If DSA is used, a PKI domain can have only one key pair.
C=CN
O=sec
OU=software
CN=bca
O=OpenCA Labs
OU=Users
CN=fips fips-sec
289

Advertisement

Table of Contents
loading

Table of Contents