Fortinet white logo
Fortinet white logo

CLI Reference

system certificate ocsp-signing-certs-group

system certificate ocsp-signing-certs-group

Use this command to upload the OCSP signing certificates into a OCSP signing certificate group.

Configure an OCSP signing certificate group when a unified OCSP responder endpoint serves multiple distinct Certificate Authorities (CAs), where each CA uses a different certificate chain for response validation. Each certificate added to the group must contain the complete, combined content of its respective certificate chain. Do not upload certificates from the same chain as separate individual entries within the group.

Syntax

config system certificate ocsp-signing-certs-group

edit <name>

config members

edit <entry_index>

set name <datasource>

next

end

next

end

Variable Description Default
<name>

Enter a name for the OCSP Signing Certificate Group. The maximum length is 63 characters.

No default
config members

<entry_index>

Enter the index number of the configuration entry. The valid range is 1–9,999,999,999,999,999,999. No default.

name <datasource>

Enter the name of the OCSP Signing Certificate.

No default.

Related topics:

system certificate ocsp-signing-certs-group

system certificate ocsp-signing-certs-group

Use this command to upload the OCSP signing certificates into a OCSP signing certificate group.

Configure an OCSP signing certificate group when a unified OCSP responder endpoint serves multiple distinct Certificate Authorities (CAs), where each CA uses a different certificate chain for response validation. Each certificate added to the group must contain the complete, combined content of its respective certificate chain. Do not upload certificates from the same chain as separate individual entries within the group.

Syntax

config system certificate ocsp-signing-certs-group

edit <name>

config members

edit <entry_index>

set name <datasource>

next

end

next

end

Variable Description Default
<name>

Enter a name for the OCSP Signing Certificate Group. The maximum length is 63 characters.

No default
config members

<entry_index>

Enter the index number of the configuration entry. The valid range is 1–9,999,999,999,999,999,999. No default.

name <datasource>

Enter the name of the OCSP Signing Certificate.

No default.

Related topics: