Crypto Pki Export Pkcs12 - Allied Telesis x510-28GTX Command Reference Manual

Stackable gigabit edge switches x510 series
Table of Contents

Advertisement

P
K
I
C
UBLIC
EY
NFRASTRUCTURE
OMMANDS
12
CRYPTO PKI EXPORT PKCS

crypto pki export pkcs12

Overview
Use this command to export a certificate and private key for an entity in a
trustpoint to a file in PKCS#12 format at the specified URL. The private key is
encrypted with a passphrase for security.
crypto pki export <trustpoint> pkcs12 {ca|server|<username>}
Syntax
<url>
Mode
Privileged Exec
Usage
If the ca option is specified, this command exports the root CA certificate and the
corresponding private key, if the trustpoint has been authenticated as a locally
selfsigned CA. (If the trustpoint represents an external CA, then there is no private
key on the system corresponding to the root CA certificate. Use the crypto pki
export pem file to export the certificate by itself.) The command prompts for a
passphrase to encrypt the private key.
If the server option is specified, this command exports the server certificate and
the corresponding private key, if the server has been enrolled to the trustpoint. The
command prompts for a passphrase to encrypt the private key.
If a RADIUS username is specified, this command exports the PKCS#12 file that was
generated using the crypto pki enroll user command. (The key within the file was
already encrypted as part of the user enrollment process.)
In the event that there is a RADIUS user named "ca" or "server", enter "user:ca" or
"user:server" as the username.
The key and certificate must already exist.
C613-50170-01 Rev B
Parameter
Description
<trustpoint>
The name of the trustpoint for which the certificate and key are
tobe exported.
ca
If this option is specified, the command exports the root CA
certificate and corresponding key.
server
If this option is specified, the command exports the server
certificate and corresponding key.
<username>
If a RADIUS username is specified, the command exports the
PKCS#12 file that was previously generated using the crypto pki
enroll user command. To avoid ambiguity with keywords, the
username may be prefixed by the string "user:".
<url>
The destination URL for the PKCS#12 file. The format of the URLis
the same as any valid destination for a file copy command.
Command Reference for x510 Series
AlliedWare Plus™ Operating System - Version 5.4.7-1.x
1958

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents