After obtaining a certificate for an AS PIC or MultiServices PIC, you must generate a public-private key before you can generate a local certificate. The public key is included in the local digital certificate and the private key is used to decrypt data received from peers. To generate a public-private key pair, issue the request security pki generate-key-pair certificate-id certificate-id-name command.
Generate a public/private key for an AS PIC or MultiServices PIC:
- user@host>request security pki generate-key-pair
certificate-id local-entrust2
- Generated key pair local-entrust2, key size 1024 bits