Displaying And Maintaining Pki; Pki Configuration Examples; Requesting A Certificate From A Ca Running Rsa Keon - HP 5120 SI Series Security Configuration Manual

Hide thumbs Also See for 5120 SI Series:
Table of Contents
To do...
Create a certificate attribute-based
access control policy and enter its
view
Configure a certificate
attribute-based access control rule
CAUTION:
A certificate attribute group must exist to be associated with a rule.

Displaying and maintaining PKI

To do...
Display the contents or request
status of a certificate
Display CRLs
Display information about one or
all certificate attribute groups
Display information about one or
all certificate attribute-based
access control policies

PKI configuration examples

CAUTION:
The SCEP add-on is required when you use the Windows Server as the CA. In this case, when
configuring the PKI domain, you need to use the certificate request from ra command to specify that the
entity requests a certificate from an RA.
The SCEP add-on is not required when RSA Keon is used. In this case, when configuring a PKI domain,
you need to use the certificate request from ca command to specify that the entity requests a certificate
from a CA.
Unless otherwise noted, devices in the configuration examples are operating in non-FIPS mode.

Requesting a certificate from a CA running RSA Keon

Use the command...
pki certificate access-control-policy
policy-name
rule [ id ] { deny | permit }
group-name
Use the command...
display pki certificate { { ca | local }
domain domain-name |
request-status } [ | { begin |
exclude | include }
regular-expression ]
display pki crl domain
domain-name [ | { begin | exclude
| include } regular-expression ]
display pki certificate
attribute-group { group-name |
all } [ | { begin | exclude |
include } regular-expression ]
display pki certificate
access-control-policy { policy-name
| all } [ | { begin | exclude |
include } regular-expression ]
231
Remarks
Required
No access control policy exists by
default.
Required
No access control rule exists by
default.
Remarks
Available in any view
Available in any view
Available in any view
Available in any view
Table of Contents
loading

Table of Contents