EasyManuals Logo

Cisco MDS 9000 Series Command Reference

Cisco MDS 9000 Series
1464 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #252 background imageLoading...
Page #252 background image
Send documentation comments to mdsfeedback-doc@cisco.com
4-114
Cisco MDS 9000 Family Command Reference
OL-8413-07, Cisco MDS SAN-OS Release 3.x
Chapter 4 C Commands
crypto ca import
crypto ca import
To import the identity certificate alone in PEM format or the identity certificate and associated RSA key
pair and CA certificate (or certificate chain) in Public-Key Cryptography Standards (PKCS) #12 form,
use the crypto ca import command in configuration mode.
crypto ca import trustpoint-label {certificate | pkcs12 source-file-url pkcs12-password}
Syntax Description
Defaults None.
Command Modes Configuration mode.
Command History
Usage Guidelines The first form of the command, crypto ca import trustpoint-label certificate, is used to import (by cut
and paste means) the identity certificate obtained from the CA, corresponding to the enrollment request
generated earlier in the trust point and submitted to the CA. The administrator is prompted to cut and
paste the certificate.
The second form of the command, crypto ca import trustpoint-label pkcs12 source-file-url
pkcs12-password, is used to import the complete identity information (that is, the identity certficate and
associated RSA key pair and CA certificate or certficate chain) into an empty trust point. This command
is useful for restoring the configuration after a system goes down.
Note The trust point configuration (created by the crypto ca trustpoint command) is persistent only if saved
explicitly using the copy running-config startup-config command. The certificates and CRL associated
to a trust point are automatically made persistent if the trust point in question was already saved in the
startup configuration. Conversely, if the trust point was not saved in the startup configuration, the
certificates and CRL associated to it are not made persistent automatically because they do not exist
without the corresponding trust point after the switch reboots.
To ensure the that the configured certificates, CRLs and key pairs are made persistent, always save the
running configuration to the startup configuration
trustpoint-label Specifies the name of the trust point. The maximum size is 64
characters.
pkcs12 source-file-url Specifies a source file in bootflash:filename format. The maximum size
is 512 characters.
pkcs12-password Specifies the password that was used to protect the RSA private key in
the imported PKCS#12 file. The maximum size is 64 characters.
Release Modification
3.0(1) This command was introduced.

Table of Contents

Other manuals for Cisco MDS 9000 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco MDS 9000 Series and is the answer not in the manual?

Cisco MDS 9000 Series Specifications

General IconGeneral
CategorySwitch
Operating SystemCisco NX-OS
PortsVaries by model
ProtocolsFibre Channel (FC), Fibre Channel over IP (FCIP), iSCSI
RedundancyRedundant supervisors, power supplies, and fans
ManagementCisco Data Center Network Manager (DCNM), CLI, SNMP
Virtualization SupportVSANs (Virtual SANs)
Security FeaturesFibre Channel Security Protocol (FC-SP)
Hot Swappable Componentspower supplies, fans
Power Supply OptionsAC and DC options available

Related product manuals