2051
Related command: pki retrieval-certificate, pki domain and certificate request polling.Example # Display the local certificate.
<Sysname> display pki certificate local domain 1
Data:
Version: 3 (0x2)
Serial Number:
10B7D4E3 00010000 0086
Signature Algorithm: md5WithRSAEncryption
Issuer:
emailAddress=myca@aabbcc.net
C=CN
ST=Country A
L=City X
O=abc
OU=bjs
CN=new-ca
Validity
Not Before: Jan 13 08: 57: 21 2004 GMT
Not After : Jan 20 09: 07: 21 2005 GMT
Subject:
C=CN
ST=Country B
L=City Y
CN=pki test
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
RSA Public Key: (512 bit)
Modulus (512 bit):
00D41D1F ...
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Subject Alternative Name:
DNS: hyf.xxyyzz.net
X509v3 CRL Distribution Points:
URI:http://1.1.1.1:447/myca.crl
... ...
Signature Algorithm: md5WithRSAEncryption
A3A5A447 4D08387D ...

Table532 Description on the fields of the display pki certificate command

Field Description
Version Version of the certificate
Serial Number Serial number of the certificate
Signature Algorithm Signature algorithm
Issuer Issuer of the certificate
Validity Validity period of the certificate
Subject Entity holding the certificate
Subject Public Key Info Public key information of the entity
X509v3 extensions Extensions of X509 (version 3) certificate
X509v3 CRL Distribution Points Distribution points of X509 (version 3) CRL