S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m
34-35
Cisco MDS 9000 Family CLI Configuration Guide
OL-16184-01, Cisco MDS SAN-OS Release 3.x
Chapter 34 Configuring Certificate Authorities and Digital Certificates
Example Configurations
Importing the CRL
To import the CRL to the trust point corresponding to the CA, follow these steps:
Step 1
Copy the CRL file to the MDS switch bootflash.
Vegas-1#
copy tftp:apranaCA.crl bootflash:aparnaCA.crl
Step 2
Configure the CRL.
Vegas-1#
config t
Vegas-1(config)#
crypto ca crl request myCA bootflash:aparnaCA.crl
Vegas-1(config)#
Step 3
Display the contents of the CRL.
Vegas-1(config)#
do sh crypto ca crl myCA
Trustpoint: myCA
CRL:
Certificate Revocation List (CRL):
Version 2 (0x1)
Signature Algorithm: sha1WithRSAEncryption
Issuer: /[email protected]/C=IN/ST=Karnatak
Yourcompany/OU=netstorage/CN=Aparna CA
Last Update: Nov 12 04:36:04 2005 GMT
Next Update: Nov 19 16:56:04 2005 GMT
CRL extensions:
X509v3 Authority Key Identifier:
keyid:27:28:F2:46:83:1B:AC:23:4C:45:4D:8E:C9:18:50:1