268
Parameters
domain domain-name: Specifies the name of a PKI domain, a case-insensitive string of 1 to 31 characters.
The domain name cannot contain the following special characters: tilde (~), asterisk (*), backslash (\),
vertical bar (|), colon (:), dot (.), left angle bracket (<), right angle bracket (>), quotation marks ("), and
apostrophe (').
Usage guidelines
You can abort a certificate request if you want to change some parameters, such as common name,
country code, or FQDN, in the certificate request before the CA issues the certificate. Use the display pki
certificate request-status command to display the certificate request status.
Examples
# Abort the certificate request for the PKI domain 1.
<Sysname> system-view
[Sysname] pki abort-certificate- request domain 1
The certificate request is in process.
Confirm to abort it? [Y/N]:y
Related commands
• display pki certificate request-status
• pki request-certificate domain
pki certificate access-control-policy
Use pki certificate access-control-policy to create a certificate access control policy and enter its view.
Use undo pki certificate access-control-policy to remove a certificate access control policy.
Syntax
pki certificate access-control-policy policy-name
undo pki certificate access-control-policy policy-name
Default
No certificate access control policy exists.
Views
System view
Predefined user roles
network-admin
Parameters
policy-name: Specifies a policy name, a case-insensitive string of 1 to 31 characters.
Usage guidelines
You can add multiple rules to a certificate access control policy.
Examples
# Create a certificate access control policy named mypolicy and enter its view.
<Sysname> system-view
[Sysname] pki certificate access-control-policy mypolicy
[Sysname-pki-cert-acp-mypolicy]