HP Comware 5 Debug Manual Vol 3
FEADA5CA 028289AB CE95C6B6 E687639D
// The serial number of the certificate is FEADA5CA 028289AB CE95C6B6 E687639D.
Issuer:
C=cn
O=aaa
OU=software
CN=sec
// The above shows the DN of the issuer.
Subject:
CN=crtSysname3
// The above shows the Entity DN of the certificate being validated.
*0.745641 Sysname PKI/7/PKI_Debug:CN=crtSysname3
*0.745657 Sysname PKI/7/PKI_Debug:error at 0 depth:subject issuer mismatch
*0.745657 Sysname PKI/7/PKI_Debug:Check the last certificate self signed.
*0.745657 Sysname PKI/7/PKI_Debug:CN=crtSysname3
*0.745657 Sysname PKI/7/PKI_Debug:error at 0 depth:subject issuer mismatch
*0.745672 Sysname PKI/7/PKI_Debug:Lookup certificate issuers and push into chain
*0.745672 Sysname PKI/7/PKI_Debug:CN=crtSysname3
*0.745672 Sysname PKI/7/PKI_Debug:error at 0 depth:subject issuer mismatch
*0.745688 Sysname PKI/7/PKI_Debug:Check certificates purpose.
*0.745688 Sysname PKI/7/PKI_Debug:Check certificates trust.
*0.746704 Sysname PKI/7/PKI_Debug:Check certificates revocation status.
Verify result: ok
// The PKI module checked the purpose, signature, and revocation status of the certificate. All items are
correct.
[Sysname]
%Aug 8 11:27:46:766 2006 Sysname PKI/4/Update_CRL:Update CRL of the domain crt
successfully.
%Aug 8 11:27:46:766 2006 Sysname PKI/4/Retrieval_CRL:Retrieval CRL of the domain crt
successfully.
// The PKI module updated and retrieved the CRL successfully.
%Aug 8 11:27:46:782 2006 Sysname PKI/4/Verify_Cert:Verify certificate CN=crtSysname3 of
the domain crt successfully.
*0.745782 Sysname PKI/7/PKI_Debug:ok
*0.745782 Sysname PKI/7/PKI_Debug:Verify certificate chain.
// The local certificate passed validation.
[Sysname] pki validate-certificate ca domain crt
Verifying certificate......
Serial Number:
EF425C97 E737B289 BB576A4B 5F657D86
Issuer:
C=cn
O=hhh
OU=software
CN=sec
Subject:
C=cn
218