Specifications

MDS 05-6628A01, Rev. A MDS Orbit MCR-4G Technical Manual 75
KEY KEY
IDENTITY LENGTH KEY DATE TIME
----------------------------------------
ex_key 2048 2012-06-20T10:46:59Z
ex_key_1 2048 2012-06-19T04:36:26Z
ex_key_2 2048 2012-06-19T10:57:10Z
ex_key_3 2048 2012-06-24T09:09:49Z
CACERT IDENTITY
------------------
pag_SGN
ex_ca_server
ex_ca_server_ENC
ex_ca_server_SGN
CERT
IDENTITY
-------------
ex_c_cert_2
tst3
tst4
[ok][2012-06-24 05:17:38]
admin@(none) 05:17:38>
Deleting security material
Obsolete security material in all categories can be deleted from the device with the ‘delete’ series of
requests:
· certmgr-delete-cacert
· certmgr-delete-cert
· certmgr-delete-firmware-certificate
· certmgr-delete-priv-key
Here is an example of deleting the private key we have moved beyond when we re-keyed the client
certificate in the last step:
admin@(none) 06:07:41% request pki-delete-priv-key key-identity ex_key_2
is-valid true
[ok][2012-06-24 06:07:55]
admin@(none) 06:07:55%
Firmware Certificate
The following example shows how to retrieve a certificate that can be used to verify a signed firmware
package:
admin@(none) 06:07:41% request pki-get-firmware-certificate preconfigured-file-server {
configuration_name GE-FileServer-1 } filename certs/cert1.pem identity cert1
Monitoring
Certificate information can be viewed for the following items:
· ca-cert-info
· client-cert-info
· firmware-cert-info
· priv-key-info