Certificates
更新时间: 2026/08/06
在AtomGit上查看源码ResourceDefinition
uris
/redfish/v1/Managers/manager_id/Certificates/certificate_id
properties
| 名称 | 类型 | 是否只读 | 取值范围/枚举值 | 说明 |
|---|---|---|---|---|
| @odata.context | string | true | - | 指定证书资源模型的OData描述信息 |
| @odata.id | string | true | - | 指定证书资源节点的访问路径 |
| @odata.type | string | true | - | 指定证书资源类型 |
| Id | string | true | - | 指定证书资源的ID |
| Name | string | true | - | 指定证书资源的名称 |
| CertificateString | string | false | - | 证书内容 |
| CertificateType | string | false | - | 证书格式 |
| Issuer { | object | false | - | 颁发者 |
| Issuer.City | string | true | - | 城市 |
| Issuer.CommonName | string | true | - | 通用名称 |
| Issuer.Country | string | true | - | 国家 |
| Issuer.Organization | string | true | - | 组织 |
| Issuer.OrganizationalUnit | string | true | - | 组织单位 |
| Issuer.State | string | true | - | 省、州 |
| } | ||||
| Subject { | object | false | - | 使用者 |
| Subject.City | string | true | - | 城市 |
| Subject.CommonName | string | true | - | 通用名称 |
| Subject.Country | string | true | - | 国家 |
| Subject.Organization | string | true | - | 组织 |
| Subject.OrganizationalUnit | string | true | - | 组织单位 |
| Subject.State | string | true | - | 省、州 |
| } | ||||
| ValidNotBefore | string | false | - | 证书有效起始日期 |
| ValidNotAfter | string | false | - | 证书有效截止日期 |
| SerialNumber | string | false | - | 序列号 |
| SignatureAlgorithm | string | false | - | 签名算法 |
| KeyUsage[ ] | array | false | - | 密钥用法 |
| PublicKeyLengthBits | number | false | - | 公钥长度 |
| Fingerprint | string | false | - | 证书指纹 |
| FingerprintHashAlgorithm | string | false | - | 证书指纹算法 |
| Oem { | object | true | - | 自定义属性 |
| Oem.Public { | object | false | - | 自定义属性 |
| Oem.Public.IsImportCrl | boolean | false | - | 是否配置证书吊销列表 |
| Oem.Public.CrlValidFrom | string | false | - | 证书吊销列表有效起始日期 |
| Oem.Public.CrlValidTo | string | false | - | 证书吊销列表有效截止日期 |
| Oem.Public.CertificateChainInfo { | object | false | - | CA证书链信息 |
| Oem.Public.CertificateChainInfo.RootCert { | object | false | - | 证书链中的根证书信息, 如果CA证书不为证书链, 此部分不展示 |
| Oem.Public.CertificateChainInfo.RootCert.Issuer | string | false | - | 颁发者 |
| Oem.Public.CertificateChainInfo.RootCert.KeyUsage | string | false | - | 密钥用法 |
| Oem.Public.CertificateChainInfo.RootCert.PublicKeyLengthBits | number | false | - | 公钥长度 |
| Oem.Public.CertificateChainInfo.RootCert.SerialNumber | string | false | - | 序列号 |
| Oem.Public.CertificateChainInfo.RootCert.SignatureAlgorithm | string | false | - | 签名算法 |
| Oem.Public.CertificateChainInfo.RootCert.Subject | string | false | - | 使用者 |
| Oem.Public.CertificateChainInfo.RootCert.ValidNotAfter | string | false | - | 证书有效截止日期 |
| Oem.Public.CertificateChainInfo.RootCert.ValidNotBefore | string | false | - | 证书有效起始日期 |
| } | ||||
| Oem.Public.CertificateChainInfo.IntermediateCert [ { | array | false | - | 证书链中的中间证书信息,如果CA证书链小于等于两级,此部分不展示 |
| Oem.Public.CertificateChainInfo.IntermediateCert[].Issuer | string | false | - | 颁发者 |
| Oem.Public.CertificateChainInfo.IntermediateCert[].KeyUsage | string | false | - | 密钥用法 |
| Oem.Public.CertificateChainInfo.IntermediateCert[].PublicKeyLengthBits | number | false | - | 公钥长度 |
| Oem.Public.CertificateChainInfo.IntermediateCert[].SerialNumber | string | false | - | 序列号 |
| Oem.Public.CertificateChainInfo.IntermediateCert[].SignatureAlgorithm | string | false | - | 签名算法 |
| Oem.Public.CertificateChainInfo.IntermediateCert[].Subject | string | false | - | 使用者 |
| Oem.Public.CertificateChainInfo.IntermediateCert[].ValidNotAfter | string | false | - | 证书有效截止日期 |
| Oem.Public.CertificateChainInfo.IntermediateCert[].ValidNotBefore | string | false | - | 证书有效起始日期 |
| } ] | ||||
| Oem.Public.CertificateChainInfo.ServerCert { | object | false | - | 证书链中的末端生效证书信息,为此CA证书的主要信息,展示内容和外层信息一致 |
| Oem.Public.CertificateChainInfo.ServerCert.Issuer | string | false | - | 颁发者 |
| Oem.Public.CertificateChainInfo.ServerCert.KeyUsage | string | false | - | 密钥用法 |
| Oem.Public.CertificateChainInfo.ServerCert.PublicKeyLengthBits | number | false | - | 公钥长度 |
| Oem.Public.CertificateChainInfo.ServerCert.SerialNumber | string | false | - | 序列号 |
| Oem.Public.CertificateChainInfo.ServerCert.SignatureAlgorithm | string | false | - | 签名算法 |
| Oem.Public.CertificateChainInfo.ServerCert.Subject | string | false | - | 使用者 |
| Oem.Public.CertificateChainInfo.ServerCert.ValidNotAfter | string | false | - | 证书有效截止日期 |
| Oem.Public.CertificateChainInfo.ServerCert.ValidNotBefore | string | false | - | 证书有效起始日期 |
| } | ||||
| } | ||||
| Oem.Public.Actions { | object | false | - | 证书资源上支持的操作 |
| Oem.Public.Actions.#Certificate.DeleteCACertificateCRL { | object | false | - | 删除CA证书吊销列表操作 |
| Oem.Public.Actions.#Certificate.DeleteCACertificateCRL.target | string | false | - | 操作路径 |
| Oem.Public.Actions.#Certificate.DeleteCACertificateCRL.@Redfish.ActionInfo | string | false | - | 操作信息查询路径 |
| } | ||||
| } | ||||
| } | ||||
| } | ||||
| CertificateUsageTypes[ ] | array | true | User/Web/SSH/Device/Platform/BIOS/IDevID/LDevID/IAK/LAK/EK | 证书用途类型列表 |
supported_methods
- GET
- POST
HTTP methods
GET
命令功能
查询指定 CA 证书资源信息
命令格式
URL: https://device_ip/redfish/v1/Managers/manager_id/Certificates/certificate_id
请求头:
X-Auth-Token: auth_value请求消息体: 无
参数说明
| 参数 | 参数说明 | 取值 |
|---|---|---|
| device_ip | 登录设备的IP地址 | IPv4或IPv6地址 |
| auth_value | 请求消息的鉴权参数 | 可通过/redfish/v1/SessionService/Sessions创建会话时获得 |
使用指南
无
使用实例
请求样例: GET https://device_ip/redfish/v1/Managers/manager_id/Certificates/certificate_id
X-Auth-Token: auth_value 请求消息体:无
响应样例:
json
{
"@odata.context": "/redfish/v1/$metadata#Certificate",
"@odata.id": "/redfish/v1/Managers/1/Certificates/1",
"@odata.type": "#Certificate.v1_3_0.Certificate",
"Id": "ManagerCACertificate",
"Name": "Manager CA Certificate",
"CertificateString": "-----BEGIN CERTIFICATE----...----END CERTIFICATE-----\n",
"CertificateType": "PEM",
"Subject": {
"OrganizationalUnit": "BMC ",
"Organization": "HW",
"City": "PX",
"CommonName": "ca_2",
"Country": "SC",
"State": "CD"
},
"Issuer": {
"OrganizationalUnit": "BMC ",
"Organization": "HW",
"City": "PX",
"CommonName": "ca_2",
"Country": "SC",
"State": "CD"
},
"ValidNotBefore": "Nov 04 2022 UTC",
"ValidNotAfter": "Nov 04 2032 UTC",
"SerialNumber": "03:04",
"SignatureAlgorithm": "sha512WithRSAEncryption",
"KeyUsage": [
"CRLSigning",
"KeyCertSign"
],
"PublicKeyLengthBits": 4096,
"Fingerprint": "9e:9e:b1:70",
"FingerprintHashAlgorithm": "SHA256",
"Oem": {
"Public": {
"IsImportCrl": false,
"CrlValidFrom": "",
"CrlValidTo": "",
"CertificateChainInfo": {
"ServerCert": {
"Subject": "CN=ca_2, OU=BMC, O=, L=PX, S=CD, C=SC",
"Issuer": "CN=ca2, OU=BMC, O=, L=PX, S=CD, C=SC",
"ValidNotBefore": "Nov 04 2022 UTC",
"ValidNotAfter": "Nov 04 2032 UTC",
"SerialNumber": "03 04",
"SignatureAlgorithm": "SHA256",
"KeyUsage": "CRL Sign, Certificate Sign",
"PublicKeyLengthBits": 4096
},
"IntermediateCert": [
{
"Subject": "CN=ca2, OU=BMC, O=, L=PX, S=CD, C=SC",
"Issuer": "CN=ca_bmc, OU=BMC, O=, L=PX, S=CD, C=SC",
"ValidNotBefore": "Nov 04 2022 UTC",
"ValidNotAfter": "Nov 04 2032 UTC",
"SerialNumber": "02",
"SignatureAlgorithm": "SHA256",
"KeyUsage": "CRL Sign, Certificate Sign",
"PublicKeyLengthBits": 4096
}
],
"RootCert": {
"Subject": "CN=ca_bmc, OU=BMC, O=, L=PX, S=CD, C=SC",
"Issuer": "CN=ca_bmc, OU=BMC, O=, L=PX, S=CD, C=SC",
"ValidNotBefore": "Oct 01 2022 UTC",
"ValidNotAfter": "Nov 04 2032 UTC",
"SerialNumber": "01",
"SignatureAlgorithm": "SHA256",
"KeyUsage": "CRL Sign, Certificate Sign",
"PublicKeyLengthBits": 4096
}
},
"Actions": {
"#Certificate.DeleteCACertificateCRL": {
"target": "/redfish/v1/Managers/1/Certificates/1/Actions/Certificate.DeleteCACertificateCRL",
"@Redfish.ActionInfo": "/redfish/v1/Managers/1/Certificates/1/DeleteCACertificateCRLActionInfo"
}
}
}
},
"CertificateUsageTypes": ["Web"]
}响应码:200
POST (ACTION)
DeleteCACertificateCRL
命令功能
删除 CA 证书的吊销列表
命令格式
URL: https://device_ip/redfish/v1/Managers/manager_id/Certificates/certificate_id/Actions/Certificate.DeleteCACertificateCRL
请求头:
X-Auth-Token: auth_value
Content-Type: header_type请求消息体:
json
{}请求头参数说明
参见 请求头参数说明
请求体参数说明
无
使用指南
无
使用实例
请求样例: POST https://device_ip/redfish/v1/Managers/manager_id/Certificates/certificate_id/Actions/Certificate.DeleteCACertificateCRL
X-Auth-Token: auth_value Content-Type: header_type 请求消息体:
json
{}响应样例:
json
{
"error": {
"code": "Base.1.0.GeneralError",
"message": "A general error has occurred. See ExtendedInfo for more information.",
"@Message.ExtendedInfo": [
{
"@odata.type": "#Message.v1_0_0.Message",
"MessageId": "Base.1.0.Success",
"RelatedProperties": [],
"Message": "Successfully Completed Request",
"MessageArgs": [],
"Severity": "OK",
"Resolution": "None"
}
]
}
}响应码:200