R2511-HP MSR Router Series Security Command Reference(V5)
328
domain-name: Specifies a PKI domain by its name.
Usage guidelines
The retrieved certificates are stored in the root directory of the device, with the file name as
domain-name_ca.cer or domain-name_local.cer according to the certificate type.
Examples
# Retrieve the CA certificate from the certificate issuing server.
<Sysname> system-view
[Sysname] pki retrieval-certificate ca domain 1
Related commands
pki domain
pki retrieval-crl domain
Use pki retrieval-crl domain to retrieve the latest CRLs from the server for CRL distribution.
Syntax
pki retrieval-crl domain domain-name
Views
System view
Default command level
2: System level
Parameters
domain-name: Specifies a PKI domain by its name, a string of 1 to 15 characters.
Usage guidelines
CRLs help verify the validity of certificates.
Examples
# Retrieve CRLs.
<Sysname> system-view
[Sysname] pki retrieval-crl domain 1
Related commands
pki domain
pki validate-certificate
Use pki validate-certificate to verify the validity of a certificate.
Syntax
pki validate-certificate { ca | local } domain domain-name
Views
System view
Default command level
2: System level










