R3204P16-HP Load Balancing Module Security Configuration Guide-6PW101

72
Task Remarks
Destroying the RSA
key pair
Optional
Destroy the existing RSA key pair and the corresponding local certificate.
If the certificate to be retrieved contains an RSA key pair, you need to destroy the
existing RSA key pair. Otherwise, the retrieving operation will fail.
Retrieving and
displaying a
certificate
Optional
Retrieve an existing certificate and display its information.
TIP:
Before retrieving a local certificate in online mode, be sure to complete LDAP server
configuration.
If a PKI domain already has a CA certificate, you cannot retrieve another CA
certificate for it. This is in order to avoid inconsistency between the certificate and
registration information due to related configuration changes. To retrieve a new CA
certificate, use the pki delete-certificate command to delete the existing CA
certificate and local certificate first.
Retrieving and
displaying a cRL
Optional
Retrieve a CRL and display its contents.
Creating a PKI entity
Select Security > PKI > Entity from the navigation tree to display existing PKI entities, as shown in Figure
71. Then, click Add to enter the PKI entity configuration page, as shown in Figure 72.
Figure 71 PKI entity list
Figure 72 PKI entity configuration page