Downloading the Trusted Certificate to the ExtremeXOS PKI and Configuring the User Accounts

The previously generated trusted CA certificate needs to be downloaded from a TFTP server using the following command. "10.127.3.236" is the TFTP server IP address:
DUT1_X450G2-24t.3 # download ssl 10.127.3.236 certificate trusted-ca /certs/exosCAcert.crt
 DUT1_X450G2-24t.4 #
 DUT1_X450G2-24t.4 # sh ssl trusted-ca exosCAcert.crt
================ exosCAcert.crt ================
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number:
            f1:4d:fe:e9:6f:e3:b8:6f
    Signature Algorithm: sha256WithRSAEncryption
        Issuer: C=US, ST=NC, L=Raleigh, O=Extr, OU=Exos, CN=CA-EXOS/emailAddress=ca-exos@extremenetworks.com
        Validity
            Not Before: Oct 20 07:12:47 2016 GMT
            Not After : Oct 20 07:12:47 2017 GMT
        Subject: C=US, ST=NC, L=Raleigh, O=Extr, OU=Exos, CN=CA-EXOS/emailAddress=ca-exos@extremenetworks.com

The user needs to be created on the ExtremeXOS device with appropriate privileges. The name of the account would be the value present in the “commonName” field of the user-certificate that was generated (that is: exos-admin-cert.crt):

DUT1_X450G2-24t.1 # create account admin exos-admin exospassword