This section provides the samples of packets for configuring the certificate expiry warning time using the merge method. The create method can also be used for the configuration of certificate expiry warning time.
Operation |
XPATH |
---|---|
edit-config:merge |
/huawei-pki:certificate-adoption/realms/certificate-expire-warning |
Data requirement
Item |
Data |
Description |
---|---|---|
Realm name |
default |
The certificate expiry warning time in the default realm is set to 10 days. |
Certificate expiry warning time |
10 |
Request example
<?xml version='1.0' encoding='UTF-8'?> <rpc message-id="2" xmlns="urn:ietf:params:xml:ns:netconf:base:1.0"> <edit-config> <target> <running/> </target> <config> <pki:certificate-adoption xmlns:pki="urn:huawei:params:xml:ns:yang:huawei-pki"> <pki:realms> <pki:name>default</pki:name> <pki:certificate-expire-warning xmlns:xc="urn:ietf:params:xml:ns:netconf:base:1.0" xc:operation="merge"> <pki:start-timestamp>10</pki:start-timestamp> </pki:certificate-expire-warning> </pki:realms> </pki:certificate-adoption> </config> </edit-config> </rpc>
A sample of certificate expiry alarm
<eventTime> 2017-03-29 13:31:43 </eventTime> <certificate-status-notification xmlns="urn:huawei:params:xml:ns:yang:huawei-pki"> <warning-records> <realm-name> default </realm-name> <certificate-type> local </certificate-type> <subject-name> //CN=50 </subject-name> <certificate-begin-day> 2016-03-31 14:04:05 </certificate-end-day> <certificate-begin-day> 2017-03-31 14:14:05 </certificate-end-day> </warning-records> </certificate-status-notification> </notification>