Generating an rsa key pair, Generating an rsa key, Pair – H3C Technologies H3C MSR 50 User Manual

Page 492

Advertising
background image

107

Item Description

Polling Count

Set the polling interval and attempt limit for querying the certificate request status.
After an entity makes a certificate request, the CA might need a long period of time if it

verifies the certificate request in manual mode. During this period, the applicant needs to
query the status of the request periodically to get the certificate as soon as possible after

the certificate is signed.

Polling Interval

Enable CRL
Checking

Select this box to specify that CRL checking is required during certificate verification.

CRL Update Period

Enter the CRL update period, that is, the interval at which the PKI entity downloads the
latest CRLs.
This item is available after you click the Enable CRL Checking box.
By default, the CRL update period depends on the next update field in the CRL file.

IMPORTANT:

The manually configured CRL update period takes precedent over that specified in the CRL

file.

CRL URL

Enter the URL of the CRL distribution point. The URL can be an IP address or a domain
name.
This item is available after you click the Enable CRL Checking box.
When the URL of the CRL distribution point is not set, you should acquire the CA
certificate and a local certificate, and then acquire a CRL through SCEP.

Generating an RSA key pair

1.

From the navigation tree, select Certificate Management > Certificate.

Figure 490 PKI certificates

2.

Click Create Key.

Advertising
This manual is related to the following products: