Adding the OCSP URL using the configuration menu

Prev Next

Use the menu options in this section to add the verification OCSP URL so that the appliance can validate certificate revocation. PKI must be selected and CAC must be enabled as the authentication method to add the OSCP URL.

To add the verification OCSP URL:

  1. Log in to the NDR as npadmin using the NDR address or FQDN. For example:

    $ ssh npadmin@10.1.0.1

    or

    $ ssh npadmin@exampleFQDN

  2. Enter privileged mode:

    npadmin@ia> enable

  3. Enter the npadmin password. The password can be 5 to 24 characters long.

    [sudo] password for npadmin: <password>

  4. Enter configuration mode:

    npadmin@ia# configure system

  5. Enter configuration CAC mode.

    npadmin@ia(config)# authentication

  6. In the CAC/PIV configuration menu, select 2 to configure the current authentication method

  7. Select 2 to add the verification OCSP URL. Press Enter.

  8. Enter the verification OCSP URL so that certificate revocation can be validated. Press Enter.

    The configuration of the OCSP URL is displayed in the CAC/PIV configuration menu.

  9. Select S to save your settings and exit the menu.