HP MSR2000/3000/4000 Router Series Security Command Reference
147
Usage guidelines
A PKI entity describes the identity attributes of an entity for certificate request, including the common
name, the organization, the unit in the organization, the locality, the state and country where the entity
resides, FQDN, and IP address.
You can specify only one PKI entity for a PKI domain. If you configure this command for a PKI domain
multiple times, the most recent configuration takes effect.
Examples
# Specify the PKI entity for certificate request as en1.
<Sysname> system-view
[Sysname] pki domain aaa
[Sysname-pki-domain-aaa] certificate request entity en1
Related commands
pki entity
certificate request from
Use certificate request from to specify the authority for accepting certificate requests.
Use undo certificate request from to remove the configuration.
Syntax
certificate request from { ca | ra }
undo certificate request from
Default
No authority is specified for accepting certificate requests.
Views
PKI domain view
Predefined user roles
network-admin
Parameters
ca: Specifies the CA to accept certificate requests.
ra: Specifies the RA to accept certificate requests.
Usage guidelines
The specified authority must be consistent with the authority used by the CA server.
An independent RA is recommended as the authority to accept certificate requests.
Examples
# Specify the RA to accept certificate requests.
<Sysname> system-view
[Sysname] pki domain aaa
[Sysname-pki-domain-aaa] certificate request from ra