Request Security Certificate (Signed) - Juniper JUNOS OS 10.4 - FOR EX REV 1 Manual

For ex series ethernet switches
Table of Contents

Advertisement

Complete Software Guide for Junos

request security certificate (signed)

Syntax
Release Information
Description
Options
Required Privilege
Level
List of Sample Output
Output Fields
request security
request security
certificate (signed)
certificate (signed)
610
®
OS for EX Series Ethernet Switches, Release 10.4
request security certificate enroll filename filename subject subject
alternative-subject alternative-subject certification-authority certification-authority encoding
(binary | pem) key-file key-file domain-name domain-name
Command introduced before Junos OS Release 7.4.
Command introduced in Junos OS Release 9.0 for EX Series switches.
(Encryption interface on M Series and T Series routers and EX Series switches only)
Obtain a signed certificate from a certificate authority (CA). The signed certificate
validates the CA and the owner of the certificate. The results are saved in a specified file
to the
directory.
/var/etc/ikecert
—File that stores the certificate.
filename filename
—Distinguished name (
subject subject
example, an organization (
(
).
l
alternative-subject alternative-subject
certification-authority certification-authority
the configuration.
encoding (binary | pem)
—File format used for the certificate. The format can be a binary
file or privacy-enhanced mail (PEM), an ASCII base64-encoded format. The default
format is binary.
—File containing a local private key.
key-file key-file
domain-name domain-name
maintenance
request security certificate (signed) on page 610
When you enter this command, you are provided feedback on the status of your request.
user@host> request security certificate enroll filename host.crt subject c=uk,o=london
alternative-subject 10.50.1.4 certification-authority verisign key-file host-1.prv domain-name
host.juniper.net
CA name: juniper.net CA file: ca_verisign
local pub/private key pair: host.prv
subject: c=uk,o=london domain name: host.juniper.net
alternative subject: 10.50.1.4
Encoding: binary
Certificate enrollment has started. To view the status of your enrollment, check
the key management process (kmd) log file at /var/log/kmd. <--------------
), which consists of a set of components—for
dn
o
), an organization unit (
—Tunnel source address.
—Name of the certificate authority profile in
—Fully qualified domain name.
ou
), a country (
c
), and a locality
Copyright © 2010, Juniper Networks, Inc.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Junos os 10.4

Table of Contents