Certificate Request Mode - H3C S5120-SI Series Command Reference Manual

Hide thumbs Also See for S5120-SI Series:
Table of Contents

Advertisement

Use the undo certificate request from command to remove the configuration.
By default, no authority is specified for certificate request..
Examples
# Specify that the entity requests a certificate from the CA.
<Sysname> system-view
[Sysname] pki domain 1
[Sysname-pki-domain-1] certificate request from ca

certificate request mode

Syntax
certificate request mode { auto [ key-length key-length | password { cipher | simple } password ]* |
manual }
undo certificate request mode
View
PKI domain view
Default Level
2: System level
Parameters
auto: Specifies to request a certificate in auto mode.
key-length: Length of the RSA keys in bits, in the range 512 to 2,048. It is 1,024 bits by default.
password: Password for certificate revocation, a case-sensitive string of 1 to 31 characters.
cipher: Specifies to display the password in cipher text.
simple: Specifies to display the password in clear text.
manual: Specifies to request a certificate in manual mode.
Description
Use the certificate request mode command to set the certificate request mode.
Use the undo certificate request mode command to restore the default.
By default, manual mode is used.
In auto mode, an entity automatically requests a certificate from an RA or CA when it has no certificate.
However, if the certificate is to expire or has expired, the entity does not initiate a re-request
automatically. To have a new local certificate, you need to request one manually. In manual mode, all
operations associated with certificate request are carried out manually.
Related commands: pki request-certificate.
Examples
# Specify to request a certificate in auto mode.
<Sysname> system-view
[Sysname] pki domain 1
1-4

Advertisement

Table of Contents
loading

Table of Contents