Fujitsu SPARC Enterprise M3000 Xscf Reference Manual page 229

For xcp version 1110
Hide thumbs Also See for SPARC Enterprise M3000:
Table of Contents

Advertisement

EXTENDED
DESCRIPTION
The order for specifying the operands with "-c selfsign" or "-c gencsr" is
fixed. Please see the SYNOPSIS section.
If you specify spaces in a value, enclose the value in single or double quotation
marks; for example, " ". However, some operands are not allowed to specify the
value with only spaces. For details, see the description of each operand.
To create a CSR, you cannot specify space characters for all operands.
To omit a value, use a pair of single or double quotation marks; for example, "".
When no value is specified, the previously set value is used.
If you include symbols or blanks in a value, enclose the value in single or double
quotation marks; for example, "Kawasaki city".
If you include a backslash or dollar mark in a value, put a backslash before the
symbol; for example, "\\" or "\$".
When the HTTPS server is enabled or there is a private certificate authority, web
server certificate, or web server secret key, a prompt to confirm execution of the
command with the specified options is displayed. Enter "y" to execute the
command or "n" to cancel the command.
The CSR is overwritten.
In case the XSCF unit is duplicated configuration, the setting automatically
reflected to the standby XSCF. When there's a defect on the standby XSCF, it
leads to an error.
When using an external certification authority, it leads to an error in the
following cases.
When the "-c gencsr" option or the "-c enable" option is executed, without
executing the "-c genserverkey" option.
Create the private key of the web server using the "-c genserverkey"
option.
When the "-c enable" option is executed, without executing the "-c
importca" option.
Import a web server certificate using the "-c importca" option.
When the web server certificate which imported by executing the "-c
importca" option does not correspond to the private key of the web server
which has been created by executing the "-c genserverkey" option.
Confirm the validity of the web server certificate.
The size of the file to be generated by sethttps(8) grows with total character
count typed in the operands of configuring the self-certification authority and
creating a self-signed web server certificate, and creating a CSR. If the file to be
generated is too large for XSCF, the command fails with an error. If you see this
error, reduce the number of characters in the operands and execute the
sethttps(8) command again.
sethttps(8)
System Administration
215

Advertisement

Table of Contents
loading

Table of Contents