User guide
Certificate Management
7-19
Certificate Management
After system operation begins, certificates, private keys, and CRLs must be correctly managed.
The commands shown in Table 7-3 are provided for certificate management:
Table 7-3 Certificate Management Commands
Command Function
scsmakeenv
Configures or modifies the Interstage certificate environment. In addition, you can
create a CSR or test certificate using this command
scsenter
Registers a certificate or CRL in the Interstage Certificate Environment
scslistcrl
Displays an overview of the CRL registered in the Interstage Certificate
Environment
scsdelete
Deletes the site certificate with the corresponding private key, or the CA certificate
from the Interstage Certificate Environment
Note: Performing a deletion may cause the system operation or restoration to be
disturbed in some cases. Read through the section "Deleting a Certificate"
described later and carefully make a deletion using this command.
scsexppfx
Exports (extracts) PKCS#12 data from the Interstage certificate environment
scsimppfx
Imports (registers) PKCS#12 data to the Interstage certificate environment
These commands can be used in the situations shown below.
For command syntax and usage details, refer to the Reference Manual (Command Edition).
Note
To use the registered certificates, settings must be changed and applied using the Interstage Management
Console.
Updating a Certificate (Before Expiration)
If a certificate expires, operation and function may be stopped. Before expiration, a new certificate must
be obtained and registered.
After a new certificate is obtained, the current certificate is usually switched to the new one. In this case,
do not delete the old certificate; leave it as is.
To switch the certificate, repeat the procedure described in Configuring Environments.