show certificate ca

Display the certificate authority details.

Syntax

Command Parameters

WORD<1–45>
Specifies name of the Certificate Authority. If the name is not specified, the command displays the CA details of all configured CA.

Default

None

Command Mode

User EXEC

Command Output

The show certificate ca command displays the following information:

Output field

Description

Name

Indicates the user defined name referring to the Certificate Authority issuing the Digital Certificate.

CommonName

Indicates the Common Name of the Certificate Authority issuing the Digital Certificate.

KeyName

Indicates the generated key pair that was first associated with the CA trustpoint.

CaUrl

Indicates the URL of the Certificate Authority issuing the Digital Certificate.

UsePost

Indicates if the HTTP request type is URL or POST. Where, TRUE indicates EJBCA and FALSE indicates Win2012 CA.

SubjectCertValidityDays

Indicates number of days for which subject certificate is valid.

Action

Indicates the various actions that a Certificate Authority can take.

  • noop - No operation

  • caauth - Certificate Authority authentication

  • enroll - Certificate Enrolment Request

  • renew - Certificate Renew Request

  • remove - Removes the subject certificate obtained online from the Certificate Authority

  • install - Installs the subject certificate obtained online from the Cerificate Authority

  • generateCsr - Generates the Certificate Signing Request required to obtain the Offline Subject Certificate

LastActionStatus

Indicates the status of the last action.

  • none - No action is performed yet

  • success - Execution of the action triggered is completed successfully

  • failed - Execution of the action triggered has failed

  • inProgress - Execution of the action triggered is in progress

LastActionFailureReason

Indicates the reason of failure for the last action performed by the Certificate Authority.