Crl Update-Period; Crl Check - H3C S3100 Series Command Manual

Hide thumbs Also See for S3100 Series:
Table of Contents

Advertisement

<Sysname> system-view
[Sysname] pki entity 1
[Sysname-pki-entity-1] country CN

crl check

Syntax
crl check disable
undo crl check disable
View
PKI domain view
Parameters
disable: Disables CRL checking.
Description
Use the crl check command to disable CRL checking. Use the undo crl check command to restore the
defaults.
By default, CRL checking is enabled.
CRLs are files issued by the CA to publish all certificates that have been revoked. Revocation of a
certificate may occur before the certificate expires. CRL checking is intended for checking whether a
certificate has been revoked. A revoked certificate is no longer trusted.
Examples
# Disable CRL checking.
<Sysname> system-view
[Sysname] pki domain 1
[Sysname-pki-domain-1] crl check disable

crl update-period

Syntax
crl update-period hours
undo crl update-period
View
PKI domain view
Parameters
hours: CRL update period, in the range 1 to 720 hours.
Description
Use the crl update-period command to set the CRL update period.
Use the undo crl update-period command to restore the default.
1-7

Advertisement

Table of Contents
loading

Table of Contents