RSA and Certificate Commands
78-21075-01 Command Line Interface Reference Guide
•
days
duration
—Specifies the number of days a certification is valid. (Range:
30–3650)
Default Configuration
The default SSL's RSA key length is 1024.
common- name
If cn
address (when the certificate is generated), or to the device's lowest static IPv4
address if there is no static IPv6 address, or to 0.0.0.0 if there is no static IP
address.
days
If duration
is not specified, it defaults to 365 days.
Command Mode
Global Configuration mode
User Guidelines
If the RSA key does not exist, you must use the parameter key-generate.
If both certificates 1 and 2 have been generated, use
one of them.
See
Keys and Certificates
certificates.
Erasing the startup configuration or returning to factory defaults automatically
deletes the default keys and they are recreated during device initialization.
Example
The following example generates a self-signed certificate for HTTPS whose
length is 2048 bytes.
switchxxxxxx(config)#
4.6
crypto certificate request
The crypto certificate request Privileged EXEC mode command generates and
displays a certificate request for HTTPS.
is not specified, it defaults to the device's lowest static IPv6
for information on how to display and copy these
crypto certificate 1 generate key-generate 2048
ip https certificate
to activate
4
75