Specifying the storage path for certificates and CRLs

About specifying the storage path for certificates and CRLs

The device has a default storage path for certificates and CRLs. You can change the storage path and specify different paths for the certificates and CRLs.

After you change the storage path for certificates or CRLs, the certificate files and CRL files in the original path are moved to the new path. Certificate files use the .cer or .p12 file extension and CRL files use the .crl file extension.

Restrictions and guidelines

If you change the storage path, save the configuration before you reboot or shut down the device to avoid loss of certificates or CRLs.

Procedure

  1. Enter system view.

    system-view

  2. Specify the storage path for certificates and CRLs.

    pki storage { certificates | crls } dir-path

    By default, the device stores certificates and CRLs in the PKI directory on the storage media of the device.