244
Views
System view
Default command level
2: System level
Parameters
policy-name
: Specifies a certificate attribute-based access control policy by its name, a
case-insensitive string of 1 to 16 characters. It cannot be
a
,
al
, or
all
.
all
: Specifies all certificate attribute-based access control policies.
Examples
# Configure an access control policy named
mypolicy
and enter its view.
<Sysname> system-view
[Sysname] pki certificate access-control-policy mypolicy
[Sysname-pki-cert-acp-mypolicy]
pki certificate attribute-group
Use
pki certificate attribute-group
to create a certificate attribute group and enter its view.
Use
undo pki certificate attribute-group
to delete one or all certificate attribute groups.
Syntax
pki certificate attribute-group
group-name
undo pki certificate attribute-group
{
group-name
|
all
}
Default
No certificate attribute group exists.
Views
System view
Default command level
2: System level
Parameters
group-name
: Specifies a certificate attribute group by its name, a case-insensitive string of 1 to 16
characters. It cannot be
a
,
al,
or
all
.
all
: Specifies all certificate attribute groups.
Examples
# Create a certificate attribute group named
mygroup
and enter its view.
<Sysname> system-view
[Sysname] pki certificate attribute-group mygroup
[Sysname-pki-cert-attribute-group-mygroup]
pki delete-certificate
Use
pki delete-certificate
to delete the certificate locally stored for a PKI domain.
Syntax
pki delete-certificate
{
ca
|
local
}
domain
domain
-
name