crl update-period


crl update-period hours

undo crl update-period


PKI domain view

Default level

2: System level


hours: CRL update period in hours, in the range of 1 to 720.


Use crl update-period to set the CRL update period, the interval at which a PKI entity with a certificate downloads the latest CRL from the LDAP server.

Use undo crl update-period to restore the default.

By default, the CRL update period depends on the next update field in the CRL file.


# Set the CRL update period to 20 hours.

<Sysname> system-view
[Sysname] pki domain 1
[Sysname-pki-domain-1] crl update-period 20