auto-enroll (PKI)

Sends enrollment message to the CA and local auto-enroll certificates.
Syntax
auto-enroll { renewal_percentage | regenerate }
no auto-enroll { renewal_percentage | regenerate }
Command Default

Auto-enrollment is not enabled.

Parameters
renewal_percentage
Sets the renewal percentage. The valid range is 10 through 90 per cent. The default is 80 per cent.
regenerate
Generates a new key pair for the certificates.
Modes

PKI trustpoint configuration sub-mode

Usage Guidelines

The no form of the command disables auto-enrollment.

Examples

The following example enables auto-enrollment.

device# configure terminal
device(config)# pki trustpoint trust1
device(config-pki-trustpoint-trust1)# auto-enroll
History
Release version Command history
08.0.70 This command was introduced.