这是配置步骤:
<H3C>tftp 192.168.0.22 get 2003_server.cer
The file 2003_server.cer exists. Overwrite it? [Y/N]:y
Verifying server file...
Deleting the old file, please wait...
File will be transferred in binary mode
Downloading file from remote TFTP server, please wait...
TFTP: 1258 bytes received in 0 second(s)
File downloaded successfully.
<H3C>sys
System View: return to User View with Ctrl+Z.
[H3C]pk
[H3C]pki e
[H3C]pki entity ssl
[H3C-pki-entity-ssl]c
[H3C-pki-entity-ssl]com
[H3C-pki-entity-ssl]common-name ssl
[H3C-pki-entity-ssl]qu
[H3C]pki d
[H3C]pki domain ssl
[H3C-pki-domain-ssl]ca id
[H3C-pki-domain-ssl]ca identifier ssl
[H3C-pki-domain-ssl]ce
[H3C-pki-domain-ssl]certificate re
[H3C-pki-domain-ssl]certificate request ra
[H3C-pki-domain-ssl]certificate request ra ?
^
% Unrecognized command found at '^' position.
[H3C-pki-domain-ssl]certificate re
[H3C-pki-domain-ssl]certificate request
[H3C-pki-domain-ssl]certificate request f
[H3C-pki-domain-ssl]certificate request from ra
[H3C-pki-domain-ssl]certificate request from ra
[H3C-pki-domain-ssl]cer
[H3C-pki-domain-ssl]certificate re
[H3C-pki-domain-ssl]certificate request e
[H3C-pki-domain-ssl]certificate request entity ssl
[H3C-pki-domain-ssl]cr
[H3C-pki-domain-ssl]crl ch
[H3C-pki-domain-ssl]crl check dis
[H3C-pki-domain-ssl]crl check disable
[H3C-pki-domain-ssl]qu
[H3C]pki im
[H3C]pki import-certificate ca d
[H3C]pki import-certificate ca domain ssl p
[H3C]pki import-certificate ca domain ssl pem f
[H3C]pki import-certificate ca domain ssl pem filename 2003_server.cer
Certificate verification failed.
Error: CA root certificate is not trusted.
[H3C]
%Oct 10 14:07:10:090 2000 H3C PKI/4/PKI_CA_CERT_NOT_TRUSTED: Root CA certificate of the domain ssl is not trusted.