Configuring A Pki Domain - HP FlexNetwork 10500 Series Security Configuration Manual

Hide thumbs Also See for FlexNetwork 10500 Series:
Table of Contents

Advertisement

Step
2.
Create a PKI entity and
enter its view.
3.
Set a common name for the
entity.
4.
Set the country code of the
entity.
5.
Set the locality of the entity.
6.
Set the organization of the
entity.
7.
Set the unit of the entity in
the organization.
8.
Set the state where the
entity resides.
9.
Set the FQDN of the entity.
10. Configure the IP address of
the entity.

Configuring a PKI domain

A PKI domain contains enrollment information for a PKI entity. It is locally significant and is intended
only for reference by other applications like SSL.
To configure a PKI domain:
Step
1.
Enter system view.
2.
Create a PKI domain
and enter its view.
3.
Specify the trusted
CA.
4.
Specify the PKI entity
name.
5.
Specify the type of
certificate request
reception authority.
6.
Specify the certificate
request URL.
Command
pki entity entity-name
common-name
common-name-sting
country country-code-string
locality locality-name
organization org-name
organization-unit
org-unit-name
state state-name
fqdn fqdn-name-string
ip { ip-address | interface
interface-type
interface-number }
Command
system-view
pki domain domain-name
ca identifier name
certificate request entity entity-name
certificate request from { ca | ra }
certificate request url url-string
[ vpn-instance vpn-instance-name ]
246
Remarks
By default, no PKI entities exist.
To create multiple PKI entities, repeat
this step.
By default, the common name is not
set.
By default, the country code is not set.
By default, the locality is not set.
By default, the organization is not set.
By default, the unit is not set.
By default, the state is not set.
By default, the FQDN is not set.
By default, the IP address is not
configured.
Remarks
N/A
By default, no PKI domains exist.
By default, no trusted CA is
specified.
To obtain a CA certificate, the
trusted CA name must be
provided. The trusted CA name
uniquely identifies the CA to be
used if multiple CAs exist on the
same CA server. The CA server's
URL is specified by using the
certificate request url
command.
By default, no entity is specified.
By default, no authority type is
specified.
By default, the certificate request
URL is not specified.

Advertisement

Table of Contents
loading

Table of Contents