The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

crypto certificate generation default

Prev Next

Configures the default values for certificate generation.

Syntax

crypto certificate generation default [country-code <code>] [days-valid <days>] [email-addr <addr>] [key-size-bits <bits>] [locality <locality_name>] [org-unit <unit_name>] [organization <org_name>] [overwrite] [state-or-prov <state_or_prov>]

Parameters

code

The country code.

days

The certificate validity period in days.

addr

Email address.

bits

The size of the private key in bits (RSA only).

locality_name

The name of the locality, such as Boston.

unit_name

The organizational unit name, such as town or county.

org_name

The organization name.

state_or_prov

The state or province name.

Example

The following example specifies the default values for certificate generation:

hostname (config) # crypto certificate generation default country-code US locality Boston days-valid 21 state-or-prov MA

User role

Admin

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Central Management System: Before Release 7.6

  • Malware Analysis: Before Release 7.6

  • Email Security — Server: Before Release 7.6

  • File Protect: Before Release 7.6

  • Network Security: Before Release 7.6

  • Endpoint Security (HX): Before Release 3.0