Configuring An Access Control Policy; Displaying And Maintaining Pki - HP 12500 Series Configuration Manual

Routing
Table of Contents

Advertisement

Step
1.
Enter system view.
2.
Delete certificates.

Configuring an access control policy

By configuring a certificate attribute access control policy, you can further control access to the server,
providing additional security for the server.
To configure a certificate attribute access control policy:
Step
1.
Enter system view.
2.
Create a certificate attribute
group and enter its view.
3.
Configure an attribute rule for
the certificate issuer name,
certificate subject name, or
alternative subject name.
Return to system view.
4.
5.
Create a certificate attribute
access control policy and
enter its view.
6.
Configure a certificate
attribute access control rule.

Displaying and maintaining PKI

Task
Display the contents or request
status of a certificate.
Display CRLs.
Display information about one or
all certificate attribute groups.
Display information about one or
all certificate attribute access
control policies.
Command
system-view
pki delete-certificate { ca | local } domain domain-name
Command
system-view
pki certificate attribute-group
group-name
attribute id { alt-subject-name
{ fqdn | ip } | { issuer-name |
subject-name } { dn | fqdn | ip } }
{ ctn | equ | nctn | nequ }
attribute-value
quit
pki certificate access-control-policy
policy-name
rule [ id ] { deny | permit }
group-name
Command
display pki certificate { { ca | local } domain
domain-name | request-status } [ | { begin |
exclude | include } regular-expression ]
display pki crl domain domain-name [ |
{ begin | exclude | include }
regular-expression ]
display pki certificate attribute-group
{ group-name | all } [ | { begin | exclude |
include } regular-expression ]
display pki certificate access-control-policy
{ policy-name | all } [ | { begin | exclude |
include } regular-expression ]
301
Remarks
N/A
No certificate attribute group
exists by default.
Optional.
No restriction exists on the issuer
name, certificate subject name
and alternative subject name by
default.
N/A
No access control policy exists by
default.
No access control rule exists by
default.
A certificate attribute group must
exist to be associated with a rule.
Remarks
Available in any view.
Available in any view.
Available in any view.
Available in any view.

Advertisement

Table of Contents
loading

Table of Contents