HP MSR2000/3000/4000 Router Series Security Command Reference

169
undo pki certificate attribute-group group-name
Default
No certificate attribute group exists.
Views
System view
Predefined user roles
network-admin
Parameters
group-name: Specifies a group name, a case-insensitive string of 1 to 31 characters.
Usage guidelines
A certificate attribute group is a set of attribute rules (defined by using the attribute command). Each
attribute rule defines a matching criterion for the issuer names, subject names, and alternative subject
names of certificates. If a certificate attribute group has no attribute rules, the certificate access control
rule referencing the attribute group matches all certificates to be checked.
Examples
# Create a certificate attribute group named mygroup and enter its view.
<Sysname> system-view
[Sysname] pki certificate attribute-group mygroup
[Sysname-pki-cert-attribute-group-mygroup]
Related commands
attribute
display pki certificate attribute-group
rule
pki delete-certificate
Use pki delete-certificate to remove the certificates in a PKI domain.
Syntax
pki delete-certificate domain domain-name { ca | local | peer [ serial serial-num ] }
Views
System view
Predefined user roles
network-admin
Parameters
domain domain-name: Specifies the name of a PKI domain, a case-insensitive string of 1 to 31 characters.
The domain name cannot contain the following special characters: tilde (~), asterisk (*), back slash (\),
vertical bar (|), colon (:), dot (.), left angle bracket (<), right angle bracket (>), quotation marks ("), and
apostrophe (').
ca: Specifies the CA certificate.
local: Specifies the local certificates.