crypto certificate name
crypto certificate name {<cert-name> | system-self-signed} {comment <new
comment> | generate self-signed | private-key pem <PEM string> | public-cert
[comment <comment string> | pem <PEM string>] | regenerate days-valid
<days> | rename <new name>}
no crypto certificate name <cert-name>
Configures default values for certificate generation.
The no form of the command clears/deletes certain certificate settings.
Syntax Description
cert-name
comment
generate
pem
private-key
public-cert
regenerate
rename
Default
N/A
Modes/Context
Config
History
3.2.3000
Role
admin
Unique name by which the certificate is identified.
Specifies a certificate comment.
Generates certificates. This option has the following
parameters:
•
comment: Includes a certificate comment (free string)
•
common-name: Specifies the common name of the issuer
and subject (e.g. a domain name)
•
country-code: Specifies the country code (a two-alphanu-
meric-character country code, or "--" for none)
•
days-valid: Specifies the number of days the certificate is
valid
•
email-addr: Specifies the email address
•
key-size-bits: Specifies the size of the private key in bits
(private key length in bits - at least 1024 but 2048 is
strongly recommended)
•
locality: Specifies the locality name
•
org-unit: Specifies the organizational unit name
•
organization: Specifies the organization name
•
serial-num: Specifies the serial number for the certificate
(a lower-case hexadecimal serial number prefixed with
"0x")
•
state-or-prov: Specifies the state or province name
Specifies certificate contents in PEM format.
Adds a certificate private key in PEM format.
Installs a certificate.
Regenerates the named certificate using configured cer-
tificate generation default values for the specified
validity period
Renames the certificate.
Mellanox Technologies
Rev 1.6.2
171