pki Commands
E-DOC-CTC-20080409-0002 v2.0
709
pki cep config
CEP configuration.
SYNTAX:
pki cep config [url = <quoted string>]
[ca_id = <quoted string>]
[md5 = <quoted string>]
[proxy_url = <quoted string>]
[subjectdn = <Distinguished Name (RFC1779):
e.g. cn=xxx, c=be>]
[keylen = <number>]
[password = <password>]
[email = <quoted string>]
[dnsname = <quoted string>]
[ipaddress = <ip-address>]
[altsubjectdn = <Distinguished Name (RFC1779):
e.g. cn=xxx, c=be>]
[chknonce = <{enabled|disabled}>]
[chktid = <{enabled|disabled}>]
[keyusage = <quoted string>]
where:
url The CEP enrollment URL. The URL must contain
the IP address of the CEP server.
OPTIONAL
ca_id CA Identity string. OPTIONAL
md5 CA cert MD5 fingerprint in hexdump format
(0A:CB:9F ...).
OPTIONAL
proxy_url Proxy server URL. The URL must contain the IP
address of the proxy server.
OPTIONAL
subjectdn Distinguished name (RFC1779) for the cert. OPTIONAL
keylen Keylength in bits. OPTIONAL
password The challenge word (if needed). OPTIONAL
email Email address (RFC822) for X509v3 extension. OPTIONAL
dnsname Domain name for X509v3 extension. OPTIONAL
ipaddress IP address for X509v3 extension. OPTIONAL
altsubjectdn Distinguished name (RFC 1779) for X509v3
extension.
OPTIONAL
chknonce Enable/Disable nonce checking. ('Disable' for
Entrust VPN Connector).
OPTIONAL