Certificates commands, Appendix l certificates commands, Table 121 certificates commands – ZyXEL Communications ZyXEL ZyWALL P1 User Manual

Page 342

Advertising
background image

ZyWALL P1 User’s Guide

Appendix L Certificates Commands

341

Appendix L

Certificates Commands

The following describes the certificate commands. See

Appendix I on page 329

for

information on the command structure.

All of these commands start with certificates.

Table 121 Certificates Commands

COMMAND

DESCRIPTION

my_cert

create

create

selfsigned
<name>
<subject>
[key size]

Create a self-signed local host certificate.

<name> specifies a descriptive name for the

generated certificate. <subject> specifies a

subject name (required) and alternative name

(required). The format is "subject-name-

dn;{ip,dns,email}=value". If the name contains

spaces, please put it in quotes. [key size]

specifies the key size. It has to be an integer

from 512 to 2048. The default is 1024 bits.

create

request
<name>
<subject>
[key size]

Create a certificate request and save it to the

router for later manual enrollment. <name>

specifies a descriptive name for the generated

certification request. <subject> specifies a

subject name (required) and alternative name

(required). The format is "subject-name-

dn;{ip,dns,email}=value". If the name contains

spaces, please put it in quotes. [key size]

specifies the key size. It has to be an integer

from 512 to 2048. The default is 1024 bits.

create

scep_enroll
<name> <CA
addr> <CA
cert> <auth
key>
<subject>
[key size]

Create a certificate request and enroll for a

certificate immediately online using SCEP

protocol. <name> specifies a descriptive name

for the enrolled certificate. <CA addr> specifies

the CA server address. <CA cert> specifies the

name of the CA certificate. <auth key> specifies

the key used for user authentication. If the key

contains spaces, please put it in quotes. To

leave it blank, type "". <subject> specifies a

subject name (required) and alternative name

(required). The format is "subject-name-

dn;{ip,dns,email}=value". If the name contains

spaces, please put it in quotes. [key size]

specifies the key size. It has to be an integer

from 512 to 2048. The default is 1024 bits.

Advertising