Command Hierarchies
Page 106 7450 ESS System Mangement Guide
Public Key Infrastructure (PKI) Commands
config
—system
— security
— pki
— ca-profile name [create]
—no ca-profile name
— cert-file filename
—no cert-file
— [no] accept-unprotected-errormsg
— [no] accept-unprotected-pkiconf
— http-response-timeout timeout
—no http-response-timeout
— key-list
— key password [hash|hash2] reference reference-number
—no key reference reference-number
— response-signing-cert filename
—no response-signing-cert
— [no] same-recipnonce-for-pollreq
— url url-string [service-id service-id]
—no url
— certificate-display-format {ascii|utf8}
— certificate-expiration-warning hours [repeat repeat-hours]
—no certificate-expiration-warning
— crl-expiration-warning
hours [repeat repeat-hours]
—no crl-expiration-warning
— maximum-cert-chain-depth level
—no maximum-cert-chain-depth
admin
— certificate
— clear-ocsp-cache [entry-id]
— display type {cert|key|crl|cert-request} url-string format {pkcs10|pkcs12|pkcs7-der|pkcs7-
pem|pem|der} [password [32 chars max]]
— export type {cert|key|crl} input filename output url-string format output-format [password [32
chars max]] [pkey filename]
— gen-keypair url-string [size {512|1024|2048}] [type
{rsa|dsa}]
— gen-local-cert-req keypair url-string subject-dn subject-dn [domain-name [255 chars max]] [ip-
addr ip-address] file url-string [hash-alg hash-algorithm]
— import type {cert|key|crl} input url-string output filename format input-format [password [32
chars max]]
— reload type {cert|key|cert-key-pair} filename [key-file filename]
Profile Commands
config
—system
— security
—Profile Commands — [no] profile user-profile-name
— default-action {deny-all | permit-all | none}
— [no] entry entry-id
— action {deny | permit}
— description description-string
—no description
— security command-string