Chapter 8 Certificate Commands

Table 20 certificates Commands

COMMAND

DESCRIPTION

certificates ca_trusted

[onoff] specifies whether or not the specified CA issues CRL. If [onoff]

crl_issuer <name> [onoff]

is not specified, the current crl_issuer status of the CA displays.

certificates ca_trusted delete

Removes the specified trusted CA certificate.

<name>

 

certificates ca_trusted export

Exports the specified PEM-encoded certificate to your CLI session’s

<name>

window for you to copy and paste.

certificates ca_trusted import

Imports the specified PEM-encoded CA certificate from your CLI

<name>

session. After you enter the command, copy and paste the PEM-

 

encoded certificate into your CLI session window. With some terminal

 

emulation software you may need to move your mouse around to get

 

the transfer going.

 

 

certificates ca_trusted list

Displays all trusted CA certificate names and their basic information.

certificates ca_trusted rename

Renames the specified trusted CA certificate.

<old-name><new-name>

 

certificates ca_trusted verify

Has the ZyXEL Device verify the certification path of the specified

<name>[timeout]

trusted CA certificate.

certificates ca_trusted view

Displays details about the specified trusted CA certificate.

<name>

 

certificates dir_server add

Adds a new directory server entry.

<server_name> <addr[:port]>

 

[login:password]

 

certificates dir_server delete

Removes the specified directory server entry.

<server-name>

 

certificates dir_server edit

Edits the specified directory server entry.

<server-name> <addr[:port]>

 

[login:password]

 

certificates dir_server list

Displays all directory server entry names and their basic information.

certificates dir_server rename

Renames the specified directory server entry.

<old-server-name><new-server-

<old-server-name> specifies the name of the directory server entry

name>

to be renamed.

 

<new-server-name> specifies the new name for the directory server

 

entry.

 

 

certificates dir_server view

Displays details about the specified directory server entry.

<server-name>

 

certificates my_cert create

Creates a certificate request and enroll for a certificate immediately

cmp_enroll <name><ca-addr>

online using CMP protocol.

<ca-cert><auth-key><subject>

 

[key-length]

 

certificates my_cert create

Creates a certificate request and saves it on the ZyXEL Device for later

request <name><subject>[key-

manual enrollment.

length]

 

certificates my_cert create

Creates a certificate request and enrolls for a certificate immediately

scep_enroll <name><ca-addr>

online using SCEP protocol.

<ca-cert><ra-sign><ra-encr>

<ra-sign> specifies the name of the RA (Registration Authority)

<auth-key><subject>[key-

signing certificate. If it is not required, type ““ to leave it blank.

length]

<ra-encr> specifies the name of the RA encryption certificate. If it is

 

not required, type ““ to leave it blank.

50

 

DSL & IAD CLI Reference Guide