Parameter
user
group
verbose
help
Table 1.1.
1.1.2. Usage
Example 1.1, "Default pkicreate
In
running on ports 9180 and 9543, named rhpki-ca2, in the /var/lib/rhpki-ca2 directory.
pkicreate
-pki_instance_root=/var/lib
ca2
-ee_secure_port=9543
tomcat_server_port=1802
Example 1.1. Default pkicreate Usage
Alternatively, the CA services can run on different ports.
creates a CA instance with port separation. The agent port is 9544, the end-entity port is 9543, and
the administrator port is 9545.
pkicreate
-pki_instance_root=/var/lib
-agent_secure_port=9544
admin_secure_port=9545
group=pkiuser
-verbose
Example 1.2. pkicreate with Port Separation
To keep the pkicreate script from creating a new instance when it is run, set the
DONT_RUN_PKICREATE environment variable to 1.
export DONT_RUN_PKICREATE=1
1.2. pkiremove
The pkiremove tool removes subsystem instances. This tool removes the single subsystem instance
specified; it does not uninstall the Certificate System packages.
1.2.1. Syntax
This tool has the following syntax:
pkiremove
-pki_instance_root=/directory/path
Parameter
pki_instance_root
Usage", the pkicreate is used to create a new CA instance
-subsystem_type=ca
-ee_secure_client_auth_port=9546
-user=pkiuser
-group=pkiuser
-subsystem_type=ca
-ee_secure_port=9543
-unsecure_port=9180
Description
Sets the user as which the Certificate System
instance will run. This option must be set.
Sets the group as which the Certificate System
instance will run. This option must be set.
Optional. Runs the new instance creation in
verbose mode.
Shows the help information.
-pki_instance_name=rhpki-
-unsecure_port=9180
-verbose
Example 1.2, "pkicreate with Port Separation"
-pki_instance_name=rhpki-ca2
-ee_secure_client_auth_port=9546
-tomcat_server_port=1802
-pki_instance_name=instance_ID
Description
Gives the full path to the instance configuration
directory.
Usage
-
-
-user=pkiuser
-
3
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.3 - COMMAND-LINE and is the answer not in the manual?
Questions and answers