EasyManuals Logo
Home>HP>Switch>3600 v2 Series

HP 3600 v2 Series Security Configuration Guide

HP 3600 v2 Series
398 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #257 background imageLoading...
Page #257 background image
246
Submitting a PKI certificate request
When requesting a certificate, an entity introduces itself to the CA by providing its identity information
and public key, which will be the major components of the certificate. A certificate request can be
submitted to a CA in offline mode or online mode. In offline mode, a certificate request is submitted to
a CA by an “out-of-band” means such as phone, disk, or email.
An online certificate request can be submitted in manual mode or auto mode.
Submitting a certificate request in auto mode
In auto mode, an entity automatically requests a certificate from the CA server if it has no local certificate
for an application working with PKI, and then retrieves the certificate and saves the certificate locally.
Before requesting a certificate, if the PKI domain does not have the CA certificate yet, the entity
automatically retrieves the CA certificate.
Follow these steps to configure an entity to submit a certificate request in auto mode:
To do… Use the command… Remarks
Enter system view system-view
Enter PKI domain view pki domain domain-name
Set the certificate request mode to
auto
certificate request mode auto
[ key-length key-length | password
{ cipher | simple } password ] *
Required
Manual by default
IMPORTANT:
In auto mode, an entity does not automatically re-request a certificate to replace a certificate that is
expiring or has expired. After the certificate expires, the service usin
g
the certificate mi
g
ht be interrupted.
Submitting a certificate request in manual mode
In manual mode, you manually submit a certificate request for an entity. Before submitting a certificate
request, you must make sure that an RSA key pair has been generated and the CA certificate has been
retrieved and saved locally.
The CA certificate is required to verify the authenticity and validity of a local certificate. The public key
of the key pair is an important part of the request information and will be transferred to the CA along with
some other information. For more information about RSA key pair configuration, see Security
Configuration Guide.
Follow these steps to submit a certificate request in manual mode:
To do… Use the command… Remarks
Enter system view system-view
Enter PKI domain view pki domain domain-name
Set the certificate request mode to
manual
certificate request mode manual
Optional
Manual by default
Return to system view quit

Table of Contents

Other manuals for HP 3600 v2 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HP 3600 v2 Series and is the answer not in the manual?

HP 3600 v2 Series Specifications

General IconGeneral
BrandHP
Model3600 v2 Series
CategorySwitch
LanguageEnglish

Related product manuals