186
RSA and Certificate Commands
FILE LOCATION: C:\Users\gina\Desktop\Checkout_new\CLI Folders\Dell Contax
CLI\files\RSA_and_Certificates.fm
D E L L C O N F ID E N T IA L – P R E L IM I N A RY 5 / 1 5 /1 2 - F O R P R O O F O N LY
•
cn
common-name
—Specifies the fully qualified device URL or IP address.
(Length: 1–64 characters)
•
ou
organization-unit
—Specifies the organization-unit or department
name. (Length: 1–64 characters)
•
or
organization
—Specifies the organization name. (Length: 1–64
characters)
•
loc
location
—Specifies the location or city name. (Length: 1–64
characters)
•
st
state
—Specifies the state or province name. (Length: 1–64 characters)
•
cu
country
—Specifies the country name. (Length: 2 characters)
•
duration
days
—Specifies the number of days a certification is valid.
(Range: 30–3650)
Default Configuration
The default certificate number is 1.
The default SSL’s RSA key length is 1024.
If
passphrase
string
is not specified, the certificate is not exportable.
If
cn
common-name
is not specified, it defaults to the device’s lowest static
IPv6 address (when the certificate is generated), or to the device’s lowest
static IPv4 address if there is no static IPv6 address, or to 0.0.0.0 if there is no
static IP address.
If
duration
days
is not specified, it defaults to 365 days.
Command Mode
Global Configuration mode
User Guidelines
This command is not saved in the router configuration. However, the
certificate and keys generated by this command are saved in the private
configuration (which is never displayed to the user or backed up to another
device).
When exporting a RSA key pair to a PKCS#12 file, the RSA key pair is as
secure as the passphrase. Keep the passphrase secure.
If the RSA key does not exist, you must use the parameter
key-generate
.