Pki Configuration Examples; Configuring A Pki Entity To Request A Certificate From A Ca - H3C S3610-28P Operation Manual

S3610 & s5510 series
Table of Contents

Advertisement

Operation Manual – PKI
H3C S3610&S5510 Series Ethernet Switches
Display information about
one or all certificate
attribute groups
Display information about
one or all certificate
attribute-based access
control policies

1.12 PKI Configuration Examples

Caution:
The SCEP plug-in is required when you use the Windows Server as the CA. In this
case, when configuring the PKI domain, you need to use the certificate request
from ra command to specify that the entity requests a certificate from an RA.
The SCEP plug-in is not required when RSA Keon is used. In this case, when
configuring a PKI domain, you need to use the certificate request from ca
command to specify that the entity requests a certificate from a CA.

1.12.1 Configuring a PKI Entity to Request a Certificate from a CA

Note:
RSA Keon is used on the CA server in this configuration example.
I. Network requirements
The device submits a local certificate request to the CA server.
The device acquires the CRLs for certificate validation.
To do...
display pki certificate
attribute-group
{ group-name | all }
display pki certificate
access-control-policy
{ policy-name | all }
Use the command...
1-15
Chapter 1 PKI Configuration
Remarks
Available in any view
Available in any view

Advertisement

Table of Contents
loading

Table of Contents