427
Examples
# Display information about the SSL client policy policy1.
<Sysname> display ssl client-policy policy1
SSL client policy: policy1
SSL version: SSL 3.0
PKI domain: client-domain
Preferred ciphersuite:
RSA_AES_128_CBC_SHA
Server-verify: enabled
Table 52 Command output
Field Description
Server-verify
Indicates whether the client is enabled to use digital certificates to
authenticate servers.
pki-domain (SSL client policy view)
Use pki-domain to specify a PKI domain for the SSL client policy.
Use undo pki-domain to restore the default.
Syntax
pki-domain domain-name
undo pki-domain
Default
No PKI domain is specified for an SSL client policy.
Views
SSL client policy view
Predefined user roles
network-admin
Parameters
domain-name: Specifies a PKI domain by its name, a case-insensitive string of 1 to 31 characters.
Usage guidelines
If you use this command to specify a PKI domain for an SSL client policy, the SSL client that references the
SSL client policy will obtain its digital certificate through the specified PKI domain.
Examples
# Specify the PKI domain client-domain for the SSL client policy policy1.
<Sysname> system-view
[Sysname] ssl client-policy policy1
[Sysname-ssl-client-policy-policy1] pki-domain client-domain
Related commands
• display ssl client-policy
• pki domain