3Com Switch 8800 Family IPsec Module Configuration and Command reference Guide

426 CHAPTER 24: PKI CONFIGURATION COMMANDS
Parameter
entity-name: Entity name used to apply for certificate. It must be consistent with
the name defined by the pki entity command. It can contain one character to 15
characters.
Description
Use the certificate request entity command to specify the entity name used to
apply for certificate.
Using the undo certificate request entity command to cancel the entity name
used to apply for certificate.
By default, no entity name is specified.
Related command: pki entity.
Example
# Specify that the device uses the entity "en" to apply for certificate.
[3ComCA-pki-domain-1] certificate request entity en
certificate request from Syntax
certificate request from { ca | ra }
undo certificate request from
View
PKI domain view
Parameter
ca: Indicates that the entity registers by CA for certificate request;
ra: Indicates that the entity registers by RA for certificate request;
Description
Use the certificate request from command to choose between CA and RA to
register for certificate request.
Use the undo certificate request from command to undo the selected
registration agent.
RA offers an extension to the CA certificate issue management. It takes charge of
the input and verification of the applicant information as well as the certificate
issuing. But it supports no signature function. Within some minor PKI systems,
there is no RA and its functions are implemented through CA.
By default, no registration agent is specified. PKI IPsec policy recommends RA as
registration agent.
Example
# Specify that the entity registers by CA for certificate request
[SecBlade_VPN-pki-domain-1] certificate request from ca