show hx pki

Prev Next

Displays the HX series appliance and public key infrastructure (PKI) settings.

Syntax

show hx pki

Parameters

None

Example

The following example shows the output produced by the show hx pki command:

hostname # show hx pki
HX PKI Configuration:

Prefix: /C=US/ST=VA/L=RESTON/O=FIREEYE/OU=PRODUCT/
Agent CA days: 7300
Agent CA key bits: 2048
Agent cert days: 1825
Server CA days: 7300
Server cert key bits: 2048
Server cert days: 1825
Server CRL days: 30

Provisioning cert use enabled: yes
CA:     distro
valid from: "Oct 16 14:58:28 2012 GMT" to "Oct 16 14:58:28 2032 GMT"
subject: /C=US/ST=Virginia/L=Reston/O=Mandiant/CN=root.mandiant.com
fingerprint: E9:18:B3:4E:75:79:B2:B5:49:B4:17:19:AC:82:24:B3:34:89:7E:01
CA:     comms
valid from: "Apr 29 18:16:11 2015 GMT" to "Apr 29 18:16:11 2035 GMT"
subject: /C=US/ST=VA/L=RESTON/O=FIREEYE/OU=PRODUCT/CN=PRODCA
fingerprint: C0:29:E3:76:09:45:FF:52:A7:FA:74:5F:3C:4D:6B:AA:69:CB:D2:82
CA:     agent
valid from: "Apr 29 18:16:09 2015 GMT" to "Apr 29 18:16:09 2035 GMT"
subject: /C=US/ST=VA/L=RESTON/O=FIREEYE/OU=PRODUCT/CN=PRODCA
fingerprint: 46:6E:03:59:7F:26:86:80:79:C9:58:9E:25:46:F6:9A:4D:F1:51:23
CRL:    distro
issued: "Feb 24 15:41:36 2015 GMT" and expires on "Feb 23 15:41:36 2017 GMT"
number: 4
fingerprint: B0:0E:98:98:B8:32:84:18:54:43:88:6C:45:02:E7:01:BE:7F:C4:35
CRL:    comms
issued: "Apr 29 18:16:13 2015 GMT" and expires on "May 29 18:16:13 2015 GMT"
number: 1430331369
fingerprint: FD:A0:CB:EF:98:35:CE:EE:F7:E3:DB:28:41:7D:C3:A4:B2:9E:3B:6B
host:   fireeye-907288
role: ca
last ping: 2015-05-11T15:17:45.228Z

User role

All roles except API Analysts and API Admins

Command mode

Enabled

Supported appliances

This command is supported on the following appliance running the specified release or later:

  • Endpoint Security (HX): Release 2.5