R3166-R3206-HP High-End Firewalls VPN Command Reference-6PW101
115
Related commands: pki domain.
Examples
# Retrieve CRLs.
<Sysname> system-view
[Sysname] pki retrieval-crl domain 1
pki validate-certificate
Syntax
pki validate-certificate { ca | local } domain domain-name
View
System view
Default level
2: System level
Parameters
ca: Verifies the CA certificate.
local: Verifies the local certificate.
domain-name: Name of the PKI domain to which the certificate to be verified belongs, a string of 1 to 15
characters.
Description
Use the pki validate-certificate command to verify the validity of a certificate.
The focus of certificate validity verification will check that the certificate is signed by the CA and that the
certificate has neither expired nor been revoked.
Related commands: pki domain.
Examples
# Verify the validity of the local certificate.
<Sysname> system-view
[Sysname] pki validate-certificate local domain 1
root-certificate fingerprint
Syntax
root-certificate fingerprint { md5 | sha1 } string
undo root-certificate fingerprint
View
PKI domain view
Default level
2: System level
Parameters
md5: Uses an MD5 fingerprint.