ZyXEL Communications 5 Series User Manual
Page 818

ZyWALL 5/35/70 Series User’s Guide
818
Appendix N Certificates Commands
create
cmp_enroll
addr> cert> key> [key size] Create a certificate request and enroll for a import [name] Import the PEM-encoded certificate from stdin. export Export the PEM-encoded certificate to stdout for view View the information of the specified local host verify [timeout] Verify the certification path of the specified local delete Delete the specified local host certificate. list List all my certificate names and basic rename name> Rename the specified my certificate. def_self_sig ned [name] Set the specified self-signed certificate as the Table 290 Certificates Commands (continued) COMMAND DESCRIPTION
certificate immediately online using CMP
protocol.
for the enrolled certificate.
the CA server address.
name of the CA certificate.
the id and key used for user authentication. The
format is "id:key". To leave the id and key blank,
type ":".
(required) and alternative name (required). The
format is "subject-name-
dn;{ip,dns,email}=value". If the name contains
spaces, please put it in quotes. [key size]
specifies the key size. It has to be an integer
from 512 to 2048. The default is 1024 bits.
[name] specifies the descriptive name (optional)
as which the imported certificate is to be saved.
For my certificate importation to be successful, a
certification request corresponding to the
imported certificate must already exist on
ZyWALL. After the importation, the certification
request will automatically be deleted. If a
descriptive name is not specified for the
imported certificate, the certificate will adopt the
descriptive name of the certification request.
user to copy and paste.
name of the certificate to be exported.
certificate.
certificate to be viewed.
host certificate.
the certificate to be verified. [timeout] specifies
the timeout value in seconds (optional). The
default timeout value is 20 seconds.
be deleted.
information.
renamed.
as which the certificate is to be saved.
default self-signed certificate. [name] specifies
the name of the certificate to be set as the
default self-signed certificate. If [name] is not
specified, the name of the current self-signed
certificate is displayed.