Access Security Guide K/KA/KB.15.15

X509v3 Key Usage: Critical
Digital signature, Key encipherment, Key agreement
The detail form of the certificate specific show command is available from the web UI. The web
UI allows display of those configured certificates related to the web server only. This includes the
SSL server certificate, trust anchor certificate and any other certificates configured as part of the
certificate chain. All the certificates in the trust chain are also displayed.
Profile specific—TA profile
Two forms of output are available for this command, summary and detailed. If no argument is
provided, a brief about all profiles is printed as shown below.
Show profile specific
Show Trust Anchor profile specific details.
Syntax
(Switch_Name#)show crypto pki ta-profile [ta-profile-name]
ta-certificate
Copy a Trust Anchor certificate to the device.
ta-profile-name
Trust Anchor Profile for the certificate.
Example
Profile Name Status
-------------------- -------------- ---------------------------------
HP Procurve Root Certificate Installed
Microsoft_Inc Pending Root Certificate Installation
NOTE: This command is not available on the web UI.
Example
If a TA Profile name is specified as an argument, the Trust Anchor details for the specified TA Profile
name is displayed.
Profile Name Status
-------------------- -----------------------------------------------
HP Procurve 3 certificates installed
Trust Anchor: <print_cert for Trust Anchor>
The output format for the TA certificate is same as the format for “Certificate details” above. The
“Status” field lists the total number of certificates, including intermediates and local, that references
this trust anchor. Intermediate certificates are shown with local certificates, as certificates under an
anchor form a tree not a list.
Example
If a TA Profile name is specified as an argument, the Trust Anchor details for the specified TA Profile
name is printed.
Profile Name Status
-------------------- ---------------------------
HP Procurve 3 certificates installed
Trust Anchor:
<print_cert for Trust Anchor>
Profile specific—TA profile 515