beautypg.com

H3C Technologies H3C SecBlade LB Cards User Manual

Page 134

background image

123

Figure 54 Creating a PKI entity

b.

Create a PKI domain:

{

From the navigation tree, select Security > Certificate Management > Domain.

{

Click Add.

{

In the upper area of the page, enter torsa as the PKI domain name, enter CA server as the CA

identifier, select aaa as the local entity, select RA as the authority for certificate request, enter
http://4.4.4.1:8080/certsrv/mscep/mscep.dll as the URL for certificate request (the URL must

be in the format of http://host:port/certsrv/mscep/mscep.dll, where host and port are the host

address and port number of the CA server), and select Manual as the certificate request mode.

{

Click Apply.

{

The system displays "Fingerprint of the root certificate not specified. No root certificate
validation will occur. Continue?"

{

Click OK to confirm.

This manual is related to the following products: