ZyXEL Communications HW-D Series User Manual

Page of 496
P-662H/HW-D Series User’s Guide
Appendix I Certificates Commands
421
A
P P E N D I X
I
Certificates Commands
The following describes the certificate commands. See 
information on the command structure.
All of these commands start with certificates. 
Table 166   Certificates Commands
COMMAND
DESCRIPTION
my_cert
create
create
selfsigned 
<name> 
<subject> 
[key size]
Create a self-signed local host certificate. 
<name> specifies a descriptive name for the 
generated certificate. <subject> specifies a 
subject name (required) and alternative name 
(required). The format is "subject-name-
dn;{ip,dns,email}=value". If the name contains 
spaces, please put it in quotes. [key size] 
specifies the key size. It has to be an integer 
from 512 to 2048. The default is 1024 bits.
create
request 
<name> 
<subject> 
[key size]
Create a certificate request and save it to the 
router for later manual enrollment. <name> 
specifies a descriptive name for the generated 
certification request. <subject> specifies a 
subject name (required) and alternative name 
(required). The format is "subject-name-
dn;{ip,dns,email}=value". If the name contains 
spaces, please put it in quotes. [key size] 
specifies the key size. It has to be an integer 
from 512 to 2048. The default is 1024 bits.
create
scep_enroll 
<name> <CA 
addr> <CA 
cert> <auth 
key> 
<subject> 
[key size]
Create a certificate request and enroll for a 
certificate immediately online using SCEP 
protocol. <name> specifies a descriptive name 
for the enrolled certificate. <CA addr> specifies 
the CA server address. <CA cert> specifies the 
name of the CA certificate. <auth key> specifies 
the key used for user authentication. If the key 
contains spaces, please put it in quotes. To 
leave it blank, type "". <subject> specifies a 
subject name (required) and alternative name 
(required). The format is "subject-name-
dn;{ip,dns,email}=value". If the name contains 
spaces, please put it in quotes. [key size] 
specifies the key size. It has to be an integer 
from 512 to 2048. The default is 1024 bits.