Operations
12-17
8. Select OK to import the defined CA certificate. Select Cancel to revert the screen to its last saved
configuration.
9. To optionally import a CRL, select the Import CRL button from the Trustpoints screen.
If a certificate displays within the Certificate Management screen with a CRL, that CRL can be imported.
A certificate revocation list (CRL) is a list of certificates that have been revoked or are no longer valid. A
certificate can be revoked if the CA had improperly issued a certificate, or if a private-key is
compromised. The most common reason for revocation is the user no longer being in sole possession of
the private key.
Figure 12-10 Import CRL screen
Protocol Select the protocol used for importing the target CA certificate. Available
options include:
• tftp
• ftp
• sftp
• http
•cf
•usb1
•usb2
Port Use the spinner control to set the port. This option is not valid for cf, usb1, and
usb2.
IP Address Enter IP address of the server used to import the CA certificate. This option is
not valid for cf, usb1, and usb2.
Hostname Provide the hostname of the server used to import the CA certificate. This
option is not valid for cf, usb1, and usb2.
Path Specify the path to the CA certificate. Enter the complete relative path to the
file on the server.