Crl Update-Period; Crl Url - HP HSR6600 Command Reference Manual

Hide thumbs Also See for HSR6600:
Table of Contents

Advertisement

Usage guidelines
CRLs are files issued by the CA to publish all certificates that have been revoked. Revocation of a
certificate might occur before the certificate expires. CRL checking is intended for checking whether a
certificate has been revoked. A revoked certificate is no longer trusted.
Examples
# Disable CRL checking.
<Sysname> system-view
[Sysname] pki domain 1
[Sysname-pki-domain-1] crl check disable

crl update-period

Use crl update-period to set the CRL update period, that is, the interval at which a PKI entity with a
certificate downloads the latest CRL from the LDAP server.
Use undo crl update-period to restore the default.
Syntax
crl update-period hours
undo crl update-period
Default
The CRL update period depends on the next update field in the CRL file.
Views
PKI domain view
Default command level
2: System level
Parameters
hours: CRL update period in hours, in the range of 1 to 720.
Examples
# Set the CRL update period to 20 hours.
<Sysname> system-view
[Sysname] pki domain 1
[Sysname-pki-domain-1] crl update-period 20

crl url

Use crl url to specify the URL of the CRL distribution point.
Use undo crl url to remove the configuration.
Syntax
crl url url-string
undo crl url
253

Advertisement

Table of Contents
loading

This manual is also suitable for:

Hp 6600

Table of Contents