Difference between revisions of "Certificate Enrollment with PKI CLI"

From Dogtag
Jump to: navigation, search
m
(One intermediate revision by the same user not shown)
Line 1: Line 1:
= Requesting SSL Server Certificate =
+
= Submitting Certificate Request =
 +
 
 +
To submit a certificate request:
  
 
  $ pki -U <CA URL> ca-cert-request-submit --profile caServerCert --csr-file sslserver.csr
 
  $ pki -U <CA URL> ca-cert-request-submit --profile caServerCert --csr-file sslserver.csr
 +
 +
= Reviewing Certificate Request =
 +
 +
To review the certificate request:
 +
 +
<pre>
 +
$ pki <agent authentication> ca-cert-request-review <request ID> --file <filename>
 +
</pre>
 +
 +
It will store the certificate request in the output file and wait for an action. The file should be reviewed manually and may be edited if necessary.
 +
 +
Then enter one of the following actions to complete the review:
 +
* approve
 +
* reject
 +
* cancel
 +
* update
 +
* validate
 +
* assign
 +
* unassign
 +
 +
Alternatively, the approval process can be done in a single step:
 +
 +
<pre>
 +
$ pki <agent authentication> ca-cert-request-review <request ID> --action approve
 +
</pre>
 +
 +
= Checking Certificate Request Status =
 +
 +
<pre>
 +
$ pki ca-cert-request-show <request ID>
 +
</pre>
  
 
= See Also =
 
= See Also =

Revision as of 02:14, 10 August 2019

Submitting Certificate Request

To submit a certificate request:

$ pki -U <CA URL> ca-cert-request-submit --profile caServerCert --csr-file sslserver.csr

Reviewing Certificate Request

To review the certificate request:

$ pki <agent authentication> ca-cert-request-review <request ID> --file <filename>

It will store the certificate request in the output file and wait for an action. The file should be reviewed manually and may be edited if necessary.

Then enter one of the following actions to complete the review:

  • approve
  • reject
  • cancel
  • update
  • validate
  • assign
  • unassign

Alternatively, the approval process can be done in a single step:

$ pki <agent authentication> ca-cert-request-review <request ID> --action approve

Checking Certificate Request Status

$ pki ca-cert-request-show <request ID>

See Also