certificate

Adds a certificate alias to the validation credentials.

Syntax

certificate alias

no certificate alias

Parameters

alias
Specifies the name of the certificate alias.

Guidelines

The certificate command adds a certificate alias to the validation credentials.

A cryptographic profile optionally uses validation credentials to authenticate a remote SSL peer.

  • Validation credentials are required by an SSL client only when it authenticates the certificate that is presented by the remote SSL server. Authentication of the server's certificate is not required by the SSL standard.
  • Validation credentials are required by an SSL server only when it authenticates remote SSL clients. Authentication of SSL clients is not required by the SSL standard.

Assignment of validation credentials to a cryptographic profile requires that SSL validates the certificate that is presented by the remote peer. If the peer fails to present a certificate on request or presents a certificate that cannot be validated, the cryptographic profile requires the termination of the SSL connection.

Before you can add a certificate-alias to validation credentials, you must complete the following procedure.
  1. Use the copy command to transfer the certificate to the appliance.
  2. Use the Crypto certificate command to create an alias for the certificate.

Use the no certificate command to remove a certificate alias from the validation credentials.

Examples

Add the bob-1 certificate alias.
# certificate bob-1