Viewing Certificates

This section describes how to view the certificates of the current storage device.

Context

Procedure

  1. Choose Settings > Certificate > Certificate Management.

  2. View imported certificate information. Table 1 describes related parameters.

    Table 1 Certificate parameters

    Parameter

    Description

    Scenario

    Scenario where a certificate is used.

    Expiration Warning Days

    Number of days before certificate expiration. When the period starts, the system sends warning to users about the expiration. The value ranges from 7 to 180, in unit of days.

    Certificate

    Validity and expiration date of a certificate. Possible values are Valid, Non-existent, and Invalid.

    CA Certificate

    Validity and expiration date of a CA certificate. Possible values are Valid, Non-existent, and Invalid.

  3. Click the desired certificate scenario. You can view the certificate details on the displayed Certificate Details page.

    Table 2 describes related parameters.
    Table 2 Certificate parameters

    Parameter

    Description

    Auto Certificate Issuing

    Whether to enable the automatic certificate issuing function.

    Certificate Validity Period

    Valid period of a certificate.

    Common Name

    Common name of a certificate.

    Subject Alternative Name

    Alternative name of a certificate.

    Used By

    User of a certificate.

    Issued By

    Issuer of a certificate.

    Certificate Status

    Validity and expiration date of a certificate.

    Start Time

    Start time of the certificate validity period.

    SN

    Serial number of a certificate.

    Key Algorithm

    Key algorithm of a certificate.

    Signature Algorithm

    Signature algorithm of a certificate.

    Key Length

    Key length of a certificate.

    Fingerprint

    Hashed value of the certificate content. This value is unique for every certificate. The certificate fingerprint is required to obtain the certificate, ensuring that content in the certificate has not been modified illegally. If the certificate fingerprint is different from that configured in the PKI domain, the device will refuse the certificate.

    The details page varies depending on the scenario. The actual page prevails.