Command Hierarchies
Public Key Infrastructure (PKI) Commands
config
— system
admin
—
Profile Commands
config
— system
—Profile Commands
Page 106
—
security
—
pki
—
— no
—
—
— no
—
— no
—
— no
certificate
—
clear-ocsp-cache
[entry-id]
—
display
type {cert|key|crl|cert-request} url-string format {pkcs10|pkcs12|pkcs7-der|pkcs7-
pem|pem|der} [password [32 chars max]]
—
export
type {cert|key|crl} input filename output url-string format output-format [password [32
chars max]] [pkey filename]
—
gen-keypair
url-string [size {512|1024|2048}] [type {rsa|dsa}]
—
gen-local-cert-req
addr ip-address] file url-string [hash-alg hash-algorithm]
—
import
type {cert|key|crl} input url-string output filename format input-format [password [32
chars max]]
—
reload
type {cert|key|cert-key-pair} filename [key-file filename]
—
security
— [no]
profile
—
— [no]
ca-profile
name [create]
ca-profile
name
—
cert-file
filename
— no
cert-file
— [no]
accept-unprotected-errormsg
— [no]
accept-unprotected-pkiconf
—
http-response-timeout
— no
http-response-timeout
—
key-list
—
key
password [hash|hash2] reference reference-number
— no
key
reference reference-number
—
response-signing-cert
— no
response-signing-cert
— [no]
same-recipnonce-for-pollreq
—
url
url-string [service-id service-id]
— no
url
certificate-display-format
certificate-expiration-warning
certificate-expiration-warning
crl-expiration-warning
hours [repeat repeat-hours]
crl-expiration-warning
maximum-cert-chain-depth
maximum-cert-chain-depth
keypair url-string subject-dn subject-dn [domain-name [255 chars max]] [ip-
user-profile-name
default-action
{deny-all | permit-all | none}
entry
entry-id
—
action
{deny | permit}
—
description
description-string
— no
description
—
security
command-string
7450 ESS System Mangement Guide
timeout
filename
{ascii|utf8}
hours [repeat repeat-hours]
level