Refreshing the CRL on the primary server
Use the following procedure to refresh the CRL on the primary server. The procedure gets the current CRL from the NetBackup certificate authority and copies it to the primary server. If a host in the environment was recently revoked, you must wait up to 5 minutes before the CRL reflects that the host was revoked.
See About the host ID-based certificate revocation list.
To refresh the CRL on the primary server
- Log in to the primary server as an administrator.
For a clustered primary server, log in to the active node.
- For a clustered primary server, run the following command:
nbcertcmd -getCRL -cluster [-server primary_server_name]
To get a CRL from a NetBackup domain other than the default, specify the -server primary_server_name option and argument.
- Run the following command:
nbcertcmd -getCRL [-server primary_server_name]