For an encryption interface on an M-series or T-series routing platform, issue the following command to obtain a public key certificate from a CA. The results are saved in the specified file in the /var/etc/ikecert directory. The CA public key verifies certificates from remote peers.
- user@host> request security certificate enroll
filename filename ca-name ca-name parameters parameters