Destroying the rsa key pair, Retrieving and displaying a certificate, Retrieving and displaying a – H3C Technologies H3C MSR 50 User Manual
Page 493: Certificate
108
Figure 491 Generating an RSA key pair
3.
Set the key length.
4.
Click Apply.
Destroying the RSA key pair
1.
From the navigation tree, select Certificate Management > Certificate.
2.
Click Destroy Key.
3.
Click Apply to destroy the existing RSA key pair and the corresponding local certificate.
Figure 492 Destroying the RSA key pair
Retrieving and displaying a certificate
You can retrieve an existing CA certificate or local certificate from the CA server and save it locally. To
do so, you can use offline mode or online mode. In offline mode, you must retrieve a certificate by an
out-of-band means like FTP, disk, email and then import it into the local PKI system. By default, the
retrieved certificate is saved in a file under the root directory of the device, and the filename is
domain-name_ca.cer for the CA certificate, or domain-name_local.cer for the local certificate.
To retrieve a certificate:
1.
From the navigation tree, select Certificate Management > Certificate.
2.
Click Retrieve Cert.
Figure 493 Retrieving a certificate
3.
Configure the parameters as described in
.