Set system distinguishedname, Name using “set system – Allied Telesis AT-S63 User Manual

Page 678

background image

Chapter 37: Public Key Infrastructure (PKI) Certificate Commands

678

Section IX: Management Security

SET SYSTEM DISTINGUISHEDNAME

Syntax

set system distinguishedname="

name

"

Parameter

distinguishedname

Specifies the distinguished name for the switch.
The name must be enclosed in quotes.

Description

This command sets the distinguished name for the switch. The
distinguished name is used to create a self signed certificate or enrollment
request. For a explanation of distinguished names, refer to Chapter 34,
“PKI Certificates and SSL” in the AT-S63 Management Software Menus
Interface User’s Guide
.

Allied Telesyn recommends using the switch’s IP address or, for networks
with a Domain Name System, its domain name as the distinguished name.
For slave switches, which do not have an IP address, you can use the IP
address or domain name of the master switch of the enhanced stack as
the slave switch’s distinguished name.

To set the distinguished name when creating a self signed certificate, you
can use this command or you can set it directly in “CREATE PKI
CERTIFICATE” on page 668, which is th
e command for creating a self
signed certificate. It has a parameter for setting the distinguished name.

If you are creating an enrollment request, you must set the distinguished
name with this command first before creating the request. The command
for creating an enrollment request is “CREATE PKI
ENROLLMENTREQUEST” on page 671.

Example

The following command sets the switch’s distinguished name to the IP
address 169.22.22.22:

set system distinguishedname="cn=169.22.22.22"