EasyManuals Logo

Cisco ASA 5545-X Cli Configuration Guide

Cisco ASA 5545-X
2164 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #966 background imageLoading...
Page #966 background image
1-30
Cisco ASA Series CLI Configuration Guide
Chapter 1 Configuring Digital Certificates
Configuring Digital Certificates
Configuring the CRL Lifetime
To configure the CRL lifetime, perform the following commands:
Configuring the Server Keysize
To configure the server keysize, perform the following commands:
Command Purpose
Step 1
crypto ca server
Example:
hostname (config)# crypto ca server
Enters local ca server configuration mode. Allows
you to configure and manage a local CA.
Step 2
lifetime crl time
Example:
hostname (config-ca-server)# lifetime crl 10
Sets the length of time that you want the CRL to
remain valid.
The local CA updates and reissues the CRL each time
that a user certificate is revoked or unrevoked, but if
no revocation changes occur, the CRL is reissued
automatically once each CRL lifetime. If you do not
specify a CRL lifetime, the default time period is six
hours.
Step 3
crypto ca server crl issue
Example:
hostname(config)# crypto ca server crl issue
A new CRL has been issued.
Forces the issuance of a CRL at any time, which
immediately updates and regenerates a current CRL
to overwrite the existing CRL.
Note Do not use this command unless the CRL file
has been removed in error or has been
corrupted and must be regenerated.
Command Purpose
Step 1
crypto ca server
Example:
hostname (config)# crypto ca server
Enters local ca server configuration mode. Allows
you to configure and manage a local CA.
Step 2
keysize server
Example:
hostname (config-ca-server)# keysize server 2048
Specifies the size of the public and private keys
generated at user-certificate enrollment. The keypair
size options are 512, 768, 1024, 2048 bits, and the
default value is 1024 bits.
Note After you have enabled the local CA, you
cannot change the local CA keysize, because
all issued certificates would be invalidated.
To change the local CA keysize, you must
delete the current local CA and reconfigure a
new one.

Table of Contents

Other manuals for Cisco ASA 5545-X

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco ASA 5545-X and is the answer not in the manual?

Cisco ASA 5545-X Specifications

General IconGeneral
Power SupplyDual, Hot-swappable
Memory8 GB
Flash Memory8 GB
AC Input Voltage100-240 VAC
Form Factor1 RU
Number of VLANs1024
Security Contexts50
Interfaces8 x Gigabit Ethernet
Frequency50-60 Hz
Dimensions (H x W x D)1.75 x 17.5 x 12 in (4.4 x 44.5 x 30.5 cm)
High AvailabilityActive/Standby
StorageSSD (optional)

Related product manuals