beautypg.com

Generating an rsa key pair – H3C Technologies H3C SecPath F1000-E User Manual

Page 296

background image

284

Item Description

CRL Update Period

Enter the CRL update period, that is, the interval at which the PKI entity downloads the
latest CRLs.
This item is available when the Enable CRL Checking box is selected.
By default, the CRL update period depends on the next update field in the CRL file.

IMPORTANT:

The manually configured CRL update period takes precedent over that specified in the CRL

file.

CRL URL

Enter the URL of the CRL distribution point.
This item is available when the Enable CRL Checking box is selected.
When the URL of the CRL distribution point is not set, you should acquire the CA
certificate and a local certificate, and then acquire a CRL through SCEP.

IMPORTANT:

Currently, this item does not support domain name resolution.

Generating an RSA key pair

1.

From the navigation tree, select VPN > Certificate Management > Certificate.

Figure 175 Certificate list

2.

Click Create Key.

Figure 176 RSA key pair generation page

3.

Enter the key length.

4.

Click Apply.