Deleting A Certificate; Configuring An Access Control Policy; Displaying And Maintaining Pki - HP 6125G Configuration Manual

Security configuration guide
Hide thumbs Also See for 6125G:
Table of Contents

Advertisement

For more information about the public-key local destroy command, see Security Command Reference.

Deleting a certificate

When a certificate requested manually is about to expire or you want to request a new certificate, you
can delete the current local certificate or CA certificate.
To delete a certificate:
Step
1.
Enter system view.
2.
Delete certificates.

Configuring an access control policy

By configuring a certificate attribute access control policy, you can further control access to the server,
providing additional security for the server.
To configure a certificate attribute access control policy:
Step
1.
Enter system view.
2.
Create a certificate attribute
group and enter its view.
3.
Configure an attribute rule for
the certificate issuer name,
certificate subject name, or
alternative subject name.
4.
Return to system view.
5.
Create a certificate attribute
access control policy and
enter its view.
6.
Configure a certificate
attribute access control rule.

Displaying and maintaining PKI

Command
system-view
pki delete-certificate { ca | local } domain domain-name
Command
system-view
pki certificate attribute-group
group-name
attribute id { alt-subject-name
{ fqdn | ip } | { issuer-name |
subject-name } { dn | fqdn | ip } }
{ ctn | equ | nctn | nequ }
attribute-value
quit
pki certificate access-control-policy
policy-name
rule [ id ] { deny | permit }
group-name
166
Remarks
N/A
No certificate attribute group
exists by default.
Optional.
No restriction exists on the issuer
name, certificate subject name
and alternative subject name by
default.
N/A
No access control policy exists by
default.
No access control rule exists by
default.
A certificate attribute group must
exist to be associated with a rule.

Advertisement

Table of Contents
loading

This manual is also suitable for:

6125 blade switch series

Table of Contents