30
Table 12 Special characters
Character name
Symbol
Character name
Symbol
Tilde
~
Dot
.
Asterisk
*
Left angle bracket
<
Backslash
\
Right angle bracket
>
Vertical bar
|
Quotation marks
"
Colon
:
Apostrophe
'
der
: Specifies the DER certificate file format, including PKCS#7.
p12
: Specifies the PKCS#12 certificate file format.
pem
: Specifies the PEM certificate file format.
all
: Specifies both CA and local certificates. The RA certificate is excluded.
ca
: Specifies the CA certificate.
local
: Specifies the local certificates or the local certificates and their private keys.
passphrase p12-key
: Specifies a password for encrypting the private key of a local PKCS12
certificate.
3des-cbc
: Specifies 3DES_CBC for encrypting the private key of a local certificate.
aes-128-cbc
: Specifies 128-bit AES_CBC for encrypting the private key of a local certificate.
aes-192-cbc
: Specifies 192-bit AES_CBC for encrypting the private key of a local certificate.
aes-256-cbc
: Specifies 256-bit AES_CBC for encrypting the private key of a local certificate.
des-cbc
: Specifies DES_CBC for encrypting the private key of a local certificate.
pem-key
: Specifies a password for encrypting the private key of a local certificate in PEM format.
filename filename
: Specifies the name of the file for storing the certificate. The file name is a
case-insensitive string. If you do not specify a file name when you export certificates in PEM format,
this command displays the certificates on the terminal.
Usage guidelines
When you export the CA certificate, the following conditions might exist:
•
If the PKI domain has only one CA certificate, this command exports the CA certificate to a file
or displays it on the terminal.
•
If the PKI domain has a CA certificate chain, this command exports the certificate chain to a file
or displays it on the terminal.
When you export a local certificate to a local file, the local file name might be different from the file
name specified in the command. The file name depends on the usage of the key pair contained in the
certificate.
The following example uses
certificate
as the file name for saving an exported local certificate.
•
If the local certificate contains an RSA signing key pair, the local file name is
certificate-signature
.
•
If the local certificate contains an RSA encryption key pair, the local file name is
certificate-encryption
.
•
If the local certificate contains a general purpose RSA, ECDSA, or DSA key pair, the local file
name is
certificate.
If the PKI domain has two local certificates, the local certificates are exported as follows:
Summary of Contents for SOHO IE4300
Page 285: ...i Contents Tcl commands 1 cli 1 tclquit 1 tclsh 2...
Page 288: ...i Contents Python commands 1 exit 1 python 1 python filename 2...
Page 291: ...i Contents Automatic configuration commands 1 autodeploy udisk enable 1...
Page 323: ...25 Sysname Ten GigabitEthernet1 0 51 undo shutdown Related commands irf port...
Page 465: ...ii stp vlan enable 55 vlan mapping modulo 55...
Page 602: ...12 Related commands display mvrp statistics...
Page 609: ...i Contents VLAN mapping commands 1 display vlan mapping 1 vlan mapping 2...
Page 678: ...9 Related commands reset pppoe relay statistics...
Page 846: ...i Contents Basic IP forwarding commands 1 display fib 1 ip forwarding table save 2...
Page 1770: ...i Contents Time range commands 1 display time range 1 time range 1...
Page 2026: ...34 Related commands display mac authentication...
Page 2028: ...ii...
Page 2143: ...i Contents User profile commands 1 display user profile 1 user profile 2...
Page 2308: ...61 ipsec transform set...
Page 2531: ...i Contents SAVI commands 1 ipv6 savi down delay 1 ipv6 savi log enable 1 ipv6 savi strict 2...
Page 2534: ...3 Sysname ipv6 savi strict Related commands ipv6 verify source...
Page 2791: ...14 Sysname track 1 Related commands delay display track...
Page 2939: ...9 sntp authentication keyid sntp reliable authentication keyid...
Page 2967: ...27 Related commands apply poe profile poe enable poe max power interface view poe priority...