HP Comware 5 Debug Manual Vol 3
PKI debugging commands
debugging pki
Use debugging pki to enable PKI debugging.
Use undo debugging pki to disable PKI debugging.
Syntax
debugging pki { all | certificate access-control-policy | error | request | retrieval | verify }
undo debugging pki { all | certificate | error | request | retrieval | verify }
Default
PKI debugging is disabled.
Views
User view
Default command level
1: Monitor level
Parameters
all: Specifies all types of IPsec debugging.
certificate access-control-policy: Specifies debugging for certificate attribute-based access control
policies.
error: Specifies PKI error debugging.
request: Specifies certificate request debugging.
retrieval: Specifies certificate retrieval debugging.
verify: Specifies certificate validation debugging.
Usage guidelines
Table 1 to Table 4 describe output fields and messages for the PKI debugging commands.
Table 130 Output from the debugging pki certificate access-control-policy command
Field
Description
the attribute number Match in attribute group
'group-number'
The certificate matches the attribute number in
certificate attribute group group-number.
the attribute number Not Match in attribute group
'group-number'
The certificate does not match the attribute number in
certificate attribute group group-number.
Not match the rule number in access control policy
'string'. Check the next rule.
The certificate did not match rule number in access
control policy string. Trying the next rule.
208