config certificate hsm-local
Local certificates whose keys are stored on HSM.
config certificate hsm-local
Description: Local certificates whose keys are stored on HSM.
edit <name>
set comments {string}
set vendor [unknown|gch]
set api-version [unknown|gch-default]
set certificate {user}
set range [global|vdom]
set source [factory|user|...]
set gch-url {string}
set gch-project {string}
set gch-location {string}
set gch-keyring {string}
set gch-cryptokey {string}
set gch-cryptokey-version {string}
set gch-cloud-service-name {string}
set gch-cryptokey-algorithm [2048-RSA-PKCS1v1.5-SHA256|3072-RSA-PKCS1v1.5-SHA256|...]
next
end
config certificate hsm-local
|
Parameter |
Description |
Type |
Size |
Default |
||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
name |
Name. |
string |
Maximum length: 35 |
|
||||||||||||||||
|
comments |
Comment. |
string |
Maximum length: 511 |
|
||||||||||||||||
|
vendor |
HSM vendor. |
option |
- |
unknown |
||||||||||||||||
|
|
|
|||||||||||||||||||
|
api-version |
API version for communicating with HSM. |
option |
- |
unknown |
||||||||||||||||
|
|
|
|||||||||||||||||||
|
certificate |
PEM format certificate. |
user |
Not Specified |
|
||||||||||||||||
|
range |
Either a global or VDOM IP address range for the certificate. |
option |
- |
global |
||||||||||||||||
|
|
|
|||||||||||||||||||
|
source |
Certificate source type. |
option |
- |
user |
||||||||||||||||
|
|
|
|||||||||||||||||||
|
gch-url |
Google Cloud HSM key URL (e.g. "https://cloudkms.googleapis.com/v1/projects/sampleproject/locations/samplelocation/keyRings/samplekeyring/cryptoKeys/sampleKeyName/cryptoKeyVersions/1"). |
string |
Maximum length: 1024 |
|
||||||||||||||||
|
gch-project |
Google Cloud HSM project ID. |
string |
Maximum length: 31 |
|
||||||||||||||||
|
gch-location |
Google Cloud HSM location. |
string |
Maximum length: 63 |
|
||||||||||||||||
|
gch-keyring |
Google Cloud HSM keyring. |
string |
Maximum length: 63 |
|
||||||||||||||||
|
gch-cryptokey |
Google Cloud HSM cryptokey. |
string |
Maximum length: 63 |
|
||||||||||||||||
|
gch-cryptokey-version |
Google Cloud HSM cryptokey version. |
string |
Maximum length: 31 |
|
||||||||||||||||
|
gch-cloud-service-name |
Cloud service config name to generate access token. |
string |
Maximum length: 35 |
|
||||||||||||||||
|
gch-cryptokey-algorithm |
Google Cloud HSM cryptokey algorithm. |
option |
- |
2048-RSA-PKCS1v1.5-SHA256 |
||||||||||||||||
|
|
|
|||||||||||||||||||