HP 5920 Command Reference Manual page 213

Table of Contents

Advertisement

Views
System view
Predefined user roles
network-admin
Parameters
domain domain-name: Specifies the name of a PKI domain, a case-insensitive string of 1 to 31
characters.
der: Specifies the certificate file format as DER.
p12: Specifies the certificate file format as PKCS12.
pem: Specifies the certificate file format as PEM.
all: Specifies all certificates, including the CA certificate and local certificates in the PKI domain,
excluding the RA certificate.
ca: Specifies the CA certificate.
local :Specifies the local certificates or the local certificates and their private keys.
passphrase p12passwordstring: Specifies a password for encrypting the private key of a local PKCS12
certificate.
3des-cbc: Specifies 3DES_CBC for encrypting the private key of a local certificate.
aes-128-cbc: Specifies 128-bit AES_CBC for encrypting the private key of a local certificate.
aes-192-cbc: Specifies 192-bit AES_CBC for encrypting the private key of a local certificate.
aes-256-cbc: Specifies 256-bit AES_CBC for encrypting the private key of a local certificate.
des-cbc: Specifies DES_CBC for encrypting the private key of a local certificate.
pempasswordstring: Specifies a password for encrypting the private key of a local certificate in PEM
format.
filename filename: Specifies a file name for storing a certificate. The file name is a case-insensitive string.
If you do not specify a file name for the certificates in PEM format, this command displays the certificates
on the terminal.
Usage guidelines
When you export the CA certificate of a PKI domain, if the PKI domain has a CA certificate or a CA
certificate chain, this command exports the CA certificate or the CA certificate chain to a specified file
or display it on the terminal.
When you export the local certificates, the local file names might not be the same as specified in the
command. The file names depend on the usage of the key pairs of the certificates. In the following
description, the filename is the specified file name in the command.
If the key pair of the local certificate is for signing, the local file name is filename-sign.
If the key pair of the local certificate is for encryption, the local file name is filename-encr.
201

Advertisement

Table of Contents
loading

This manual is also suitable for:

59005920 series5900 series

Table of Contents