Nortel 3050 Command Reference Manual page 155

Vpn gateway
Hide thumbs Also See for 3050:
Table of Contents

Advertisement

Table 44
Certificate Menu Options (/cfg/cert) (cont'd.)
Command Syntax and Usage
display <pass phrase>
show
info
Copyright © 2007 Nortel Networks
.
/cfg/cert <id> Certificate Management Configuration 155
Exports the current key and certificate to a TFTP/FTP/SCP/SFTP
server in the specified format. Keys and certificates can be exported
and saved into four different formats: PEM, DER, NET, or PKCS12.
These formats have different capabilities regarding private key
encryption and the ability to save the private key and the certificate
in separate files. Only the DER format does not offer private key
encryption. The DER format and the NET format lets you store the
private key and the certificate in separate files. The PEM format and
the PKCS12 format always combine the private key and the certificate
in the same file. Most web browsers allow importing a combined key
and certificate file in the PKCS12 format.
Note: When using this command on an ASA FIPS, you can only
export the certificate—not the private key. For client certificates
however, both the certificate and the private key can be exported to a
TFTP/FTP/SCP/SFTP server using the export command.
Displays the current key and certificate in the CLI. When executing the
display command, you are provided with the option to protect the
private key with a password phrase. This adds an extra layer of security
and is recommended. You can perform a cut-and-paste operation on
the key section into a text editor, and save the private key to a file
with the .PEM extension. Repeat the cut-and-paste operation on the
certificate section and save it to a file with the .PEM extension. You
may also save both the key and the certificate to the same file, again
using the .PEM extension.
If you need to save a certificate and key in another format than the
PEM format, use the export command instead.
Note: When using this command on an ASA FIPS, only the certificate
section is displayed unless the currently selected certificate is a client
certificate. For client certificates, both the certificate section and the
private key section are displayed and can be saved into a text editor
using a cut-and-paste operation.
Displays detailed information related to the certificate, except the
certificate name.
Displays the serial number, the expiration date, and the values specified
for the subject part of the current certificate.
Nortel VPN Gateway
Command Reference
NN46120-103 01.01 Standard
10 September 2007

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

3070Nvg 3050Nvg 3070Svm 10001000 con?guration guide

Table of Contents