CLI Guide

sslcsrgen
Table 91. Details of sslcsrgen
Description Generates and downloads a certificate signing request (CSR) file to the client’s local file system. The CSR can be
used for creating a custom SSL certificate that can be used for SSL transactions on iDRAC.
To run this subcommand, you must have the Configure iDRAC privilege.
Synopsis
racadm sslcsrgen -g
racadm sslcsrgen [-g] [-f <filename>]
racadm sslcsrgen -s
racadm sslcsrgen –g -t <csr_type>
racadm sslcsrgen -g -f <filename> -t <csr_type>
racadm sslcsrgen -s -t <csr_type>
-t :
Type of CSR to be generated [1=SSL cert,2=Factory Identity Cert]
Input
-g — Generates a new CSR.
-s — Returns the status of a CSR generation process (generation in progress, active, or none).
-f — Specifies the filename of the location, <filename>, where the CSR is downloaded.
NOTE: The -f option is only supported on the remote interface(s).
Output If no options are specified, a CSR is generated and downloaded to the local file system as sslcsr by default. The -
g option cannot be used with the -s option, and the -f option can only be used with the -g option.
The sslcsrgen -s subcommand returns one of the following status codes:
CSR was generated successfully.
CSR does not exist.
Example
Display current status of CSR operation:
racadm sslcsrgen -s
Generate and download a CSR to local file system using remote RACADM
racadm -r 192.168.0.120 -u <username> -p <password> sslcsrgen -g -f
csrtest.txt
Generate and download a CSR to local file system using local RACADM
racadm sslcsrgen -g -f c:\csr\csrtest.txt
Generate a new certificate signing request for Factory Identity type
racadm sslcsrgen -g -t 2
Display the status of the current CSR operation for Factory Identity type
racadm sslcsrgen -s -t 2
Generate and download a CSR for Factory Identity type to local file system using remote RACADM
racadm -r 192.168.0.120 -u root -p calvin sslcsrgen -g -f csrtest.txt –t 2
116 RACADM Subcommand Details