No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

Command Reference

OceanStor 2800 V3 V300R006

This document is applicable to OceanStor 2800 V3. Based on the CLI provided by the DeviceManager, this document describes how to use variouscommands classified by functions and how to set the CLI and manage the storage system throughthese commands. The document that you browse online matches the latest C version of the product. Click Download to download documents of other C versions.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
show certificate general

show certificate general

Function

The show certificate general command is used to query certificate information on storage arrays in various scenarios.

Format

show certificate general [ type=? ] [ detail=? ]

Parameters

Parameter

Description

Value

type=?

Certificate type.

Possible values are:

  • "key_management_center": key management center.
  • "device_management": device management.
  • "domain_authentication": domain authentication.
  • "hypermetro_arbitration": HyperMetro arbitration.
  • "https_protocol": HTTPS protocol.
  • "ftps_protocol": FTPS protocol.
  • "syslog_authentication": Syslog server authentication.
  • "ntp_authentication": NTP server authentication.
  • "call_home_authentication": Call Home authentication.
  • "domain_authentication_extension_1": domain authentication extension 1.
  • "domain_authentication_extension_2": domain authentication extension 2.
  • "domain_authentication_extension_3": domain authentication extension 3.
  • "sso_authentication": SSO authentication.
NOTE:
  • OceanStor 2200 V3 (8 GB memory per controller) does not support the certificate type of HyperMetro arbitration, HTTPS protocol, and FTPS protocol.
  • OceanStor 2200 V3 (16 GB memory per controller) does not support the certificate type of HyperMetro arbitration.
  • OceanStor 2100 V3 does not support the certificate type of HyperMetro arbitration, HTTPS protocol, and FTPS protocol.
  • OceanStor 2600 V3 Video Surveillance Edition does not support the certificate type of HyperMetro arbitration.
  • OceanStor 2800 V3 does not support the certificate type of the key management center, HyperMetro arbitration, HTTPS protocol, and FTPS protocol.

detail=?

Queries detailed information.

The value can be:

"yes": queries detailed information.

Level

Guest

Usage Guidelines

  • This command can be used to query certificate status and related information (such as, expiration date) on the storage array in different scenarios.
  • The "show certificate general" command can be used to query information about all certificates.
  • The "show certificate general type=?" command can be used to query information about the certificate in a specific scenario.
  • The "show certificate general type=? detail=yes" command can be used to query information about the certificate and CA certificate in a specific scenario.

Example

  • Query the status of all certificates.
    admin:/>show certificate general 
      
      Type                               Status        Expire Time  Expiration Prewarning Time  CA Fingerprint                                               Label 
      ---------------------------------  ------------  -----------  --------------------------  -----------------------------------------------------------  ----- 
      Key Management Center              Valid         2028-06-19 30                          27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      Device Management                  Valid         2028-06-19 30                          27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      Domain Authentication           Valid         2028-06-19 30                          27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      HyperMetro Arbitration             Valid         2028-06-19 30                          27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      HTTPS Protocol                     Valid         2028-06-19 30                          27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      FTPS Protocol                      Valid         2028-06-19 30                          27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      Syslog Authentication              Valid         2028-06-19 30                          27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      Ntp Authentication                 Non-existent  --           30                          27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      Call Home Authentication           Non-existent  --           30                          4E:B6:D5:78:49:9B:1C:CF:5F:58:1E:AD:56:BE:3D:9B:67:44:A5:E5  Symantec 
      Call Home Authentication           Non-existent  --           30                          A8:98:5D:3A:65:E5:E5:C4:B2:D7:D6:6D:40:C6:DD:2F:B1:9C:54:36  DigiCert 
      Call Home Authentication           Non-existent  --           30                          B3:1E:B1:B7:40:E3:6C:84:02:DA:DC:37:D4:4D:F5:D4:67:49:52:F9  Entrust 
      Call Home Authentication           Non-existent  --           30                          B1:BC:96:8B:D4:F4:9D:62:2A:A8:9A:81:F2:15:01:52:A4:1D:82:9C  GlobalSign 
      Domain Authentication Extension 1  Valid         2028-06-19 7                           27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      Domain Authentication Extension 2  Valid         2028-06-19 7                           27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  -- 
      Domain Authentication Extension 3  Valid         2028-06-19 7                           27:F0:D2:3A:94:FC:7F:1D:4B:75:5E:2E:36:45:69:78:C6:2B:D9:17  --
  • Query the status of the certificate in a specific scenario.
    admin:/>show certificate general type=call_home_authentication 
      
      Type                      Status        Expire Time  Expiration Prewarning Time  CA Fingerprint                                               Label 
      ------------------------  ------------  -----------  --------------------------  -----------------------------------------------------------  ---------- 
      Call Home Authentication  Non-existent  --           30                          4E:B6:D5:78:49:9B:1C:CF:5F:58:1E:AD:56:BE:3D:9B:67:44:A5:E5  Symantec 
      Call Home Authentication  Non-existent  --           30                          A8:98:5D:3A:65:E5:E5:C4:B2:D7:D6:6D:40:C6:DD:2F:B1:9C:54:36  DigiCert 
      Call Home Authentication  Non-existent  --           30                          B3:1E:B1:B7:40:E3:6C:84:02:DA:DC:37:D4:4D:F5:D4:67:49:52:F9  Entrust 
      Call Home Authentication  Non-existent  --           30                          B1:BC:96:8B:D4:F4:9D:62:2A:A8:9A:81:F2:15:01:52:A4:1D:82:9C  GlobalSign
  • Query the detailed information of the certificate and CA certificate in a specific scenario.
    admin:/>show certificate generaltype=domain_authentication detail=yes 
      
      Type                       : Domain Authentication 
      Expiration Prewarning Time : 30 
      Status                     : Valid 
      Expire Time                : 2035-10-19 
      Issuer                     : C=US, ST=MD, L=Belcamp, O=SafeNet Inc., OU=HSM Mgmt, CN=hsm_mgmt.ca 
      Subject                    : C=CN, O=Huawei, OU=Storage, CN=DAu71fb15rf060e00004 
      Signature Algorithm        : sha1WithRSAEncryption 
      Key Algorithm              : RSA 
      Key Length                 : 2048 
      Fingerprint                : 2A:51:EF:87:00:88:4A:AE:BA:E6:81:FF:9C:7A:99:CC:F2:A4:0F:B1 
      CA Status                  : Non-existent 
      CA Expire Time             : -- 
      CA Issuer                  : -- 
      CA Subject                 : -- 
      CA Signature Algorithm     : -- 
      CA Key Algorithm           : -- 
      CA Key Length              : 0 
      CA Fingerprint          : -- 
      Label                      : --

System Response

The following table describes the parameter meanings.

Parameter

Meaning

Type

Certificate type. The certificate type can be "key_management_center", "device_management", "domain_authentication", "hypermetro_arbitration", "https_protocol", "ftps_protocol", "syslog_authentication", "ntp_authentication", "call_home_authentication", "domain_authentication_extension_1", "domain_authentication_extension_2", "domain_authentication_extension_3", or "sso_authentication".

NOTE:
  • OceanStor 2200 V3 (8 GB memory per controller) does not support the certificate type of HyperMetro arbitration, HTTPS protocol, and FTPS protocol.
  • OceanStor 2200 V3 (16 GB memory per controller) does not support the certificate type of HyperMetro arbitration.
  • OceanStor 2100 V3 does not support the certificate type of HyperMetro arbitration, HTTPS protocol, and FTPS protocol.
  • OceanStor 2600 V3 Video Surveillance Edition does not support the certificate type of HyperMetro arbitration.
  • OceanStor 2800 V3 does not support the certificate type of the key management center, HyperMetro arbitration, HTTPS protocol, and FTPS protocol.

Status

Certificate status. The certificate status can be "Non-existent", "Valid", or "Invalid".

Expire Time

Certificate expiration time. "--" is displayed if the certificate does not exist.

Expiration Prewarning Time

Certificate expiration prewarning time. The default value is 30 days and the value ranges from 7 to 180.

CA Fingerprint

CA certificate fingerprint info.

Issuer

Certificate issuer info.

Subject

Certificate subject info.

Signature Algorithm

Certificate signature algorithm.

Key Algorithm

Certificate key algorithm.

Key Length

Certificate key length.

Fingerprint

Certificate fingerprint.

CA Status

CA certificate status.

CA Expire Time

CA certificate expiration time.

CA Issuer

CA certificate issuer.

CA Subject

CA certificate subject.

CA Signature Algorithm

CA certificate signature algorithm.

Label

Label.

CA Key Algorithm

CA certificate key algorithm.

CA Key Length

CA certificate key length.

Translation
Download
Updated: 2019-07-12

Document ID: EDOC1000138382

Views: 317707

Downloads: 38

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next