Nortel Networks 5500 series User Manual

Page 303

Advertising
background image

Managing private keys and certificates

303

/cfg/cert <cert ID>

followed by:

name <name>

Names or renames the certificate, as a
mnemonic aid.

cert

Lets you paste the contents of a certificate
file from a text editor. For more information,
see

“Adding a certificate to the Nortel SNAS ”

(page 310)

.

key

Lets you paste the contents of a key file from a
text editor. For more information, see

“Adding

a private key to the Nortel SNAS ” (page 312)

.

revoke

Accesses the Revocation menu.

Not supported in Nortel Secure Network
Access Switch Software Release 1.6.1.

gensigned server|client

Generates a certificate that is signed using
the private key associated with the currently
selected certificate.

You are prompted to provide the following
parameters: <country> <state or province>
<locality> <organization> <organizational unit>
<common name> <e-mail address> <validity
period> <key size> <CA cert true|false> <serial
number> <pass phrase>

servergenerates a signed server certificate
provided with key use options that are
appropriate for server usage. Set the CA
cert value to

true

if you plan to issue your

own chained server certificates, generating
them from the currently generated server
certificate.The CA cert value you specify
when generating a certificate translates
into the X509v3 Basic Constraints property
in the generated certificate. To view the
properties of a certificate available on the
Nortel SNAS, use the

/cfg/cert #/show

command.

client—not supported in Nortel Secure
Network Access Switch Software Release
1.6.1.

request

Generates a certificate signing request.
For more information, see

“Generating and

submitting a CSR” (page 305)

.

Nortel Secure Network Access Switch

Using the Command Line Interface

NN47230-100

03.01

Standard

28 July 2008

Copyright © 2007, 2008 Nortel Networks

.

Advertising
This manual is related to the following products: