
Managing private keys and certificates
305
/cfg/cert <cert ID>
followed by:
subject
detailed information about the subject part of
the current certificate.
For example:
C/countryName (2.5.4.6) = US
where:
•
countryName
is the mnemonic name
•
2.5.4.6
is the object identifier (OID)
•
US
is the value
validate
Validates that the private key matches the
public key in the current certificate.
keysize
the key size of the private key in the current
certificate.
keyinfo
information about how the private key
associated with the currently selected
certificate is protected. For the Nortel SNAS,
private keys are protected by the cluster.
del
Removes the current certificate and private
key.
Generating and submitting a CSR
To prepare a CSR for submission to a CA, perform the following steps:
Step
Action
1
Access the Certificate menu by using the
/cfg/cert <cert
id>
command, where:
•
to generate a CSR for a new certificate,
<cert id>
is an
unused certificate number
•
to generate a CSR to renew an existing certificate,
<cert
id>
is the existing certificate number
2
Prepare the CSR. Enter the following command:
/cfg/cert #/request
You are prompted to enter the certificate request information.
Table 54 "CSR information" (page 306)
explains the required
Nortel Secure Network Access Switch
Using the Command Line Interface
NN47230-100
03.01
Standard
28 July 2008
Copyright © 2007, 2008 Nortel Networks
.
Содержание 425 series
Страница 525: ......