Predefined user roles
network-admin
network-operator
Parameters
policy-name: Specifies a certificate-based access control policy by its name, a case-insensitive
string of 1 to 31 characters.
Usage guidelines
If you do not specify a policy name, this command displays information about all certificate-based
access control policies.
Examples
# Display information about certificate-based access control policy mypolicy.
<Sysname> display pki certificate access-control-policy mypolicy
Access control policy name: mypolicy
Rule 1
Rule 2
# Display information about all certificate-based access control policies.
<Sysname> display pki certificate access-control-policy
Total PKI certificate access control policies: 2
Access control policy name: mypolicy1
Rule 1
Rule 2
Access control policy name: mypolicy2
Rule 1
Rule 2
Table 48 Command output
Field
Total PKI certificate access control
policies
permit
deny
Related commands
pki certificate access-control-policy
rule
display pki certificate attribute-group
Use display pki certificate attribute-group to display information about certificate attribute groups.
Syntax
display pki certificate attribute-group [ group-name ]
Views
Any view
deny
mygroup1
permit
mygroup2
deny
mygroup1
permit
mygroup2
deny
mygroup3
permit
mygroup4
Description
Total number of certificate-based access control policies.
Permit certificates that match the attribute group in the access
control rule.
Deny certificates that match the attribute group in the access control
rule.
408