246 
Destroying the RSA key pair 
1.  Select Authentication > Certificate Management from the navigation tree. 
2.  Click the Certificate tab to enter the page displaying existing PKI certificates.  
3.  Click Destroy Key to enter the RSA key pair destruction page.  
4.  Click Apply to destroy the existing RSA key pair and the corresponding local certificate. 
Figure 240 Key pair destruction page 
 
 
Retrieving and displaying a certificate 
You can download an existing CA certificate or local certificate from the CA server and save it locally. 
To do so, you can use offline mode or online mode. In offline mode, you can retrieve a certificate by an 
out-of-band means like FTP, disk, email and then import it into the local PKI system. 
To retrieve a certificate: 
1.  Select Authentication > Certificate Management from the navigation tree. 
2.  Select the Certificate tab to enter the page displaying existing PKI certificates.  
3.  Click Retrieve Cert to enter PKI certificate retrieval page. 
Figure 241 PKI certificate retrieval page 
 
 
4.  Configure the parameters as described in Table 93.  
5.  Click Apply. 
Table 93 Configuration items 
Item Descri
tion 
Domain Name
 
Select the PKI domain for the certificate.
 
Certificate Type
 
Select the type of the certificate to be retrieved, which can be CA or local.