RenewalConstraints Plug-in Module
100
Netscape Certificate Management System Plug-Ins Guide • March 2002
weeks of validity of the certificate. However, if the interval specified in the policy
rule is not sufficient for renewal to occur, some of your users may not be able to
renew their certificates prior to the expiration time and end up owning expired
certificates.
Note that the policy also allows you to specify how long after the expiration of a
certificate can it be renewed. If you don’t specify this, the server will renew all
expired certificates that are submitted for renewal.
During installation, Certificate Management System automatically creates an
instance of the renewal constraints policy. See “RenewalConstraintsRule Rule” on
page 101.
Configuration Parameters of
RenewalConstraints
In the CMS configuration file, the
RenewalConstraints
module is identified as
<subsystem>.Policy.impl.RenewalConstraints.class=
com.netscape.cms.policy.RenewalConstraints
, where
<subsystem>
is
ca
or
ra
(prefix identifying the subsystem).
In the CMS window, the module is identified as
RenewalConstraints
. Figure 3-6
shows how the configurable parameters for the module are displayed in the CMS
window.
Figure 3-6
Parameters of the RenewalConstraints module
Summary of Contents for Certificate Management System 6.0
Page 1: ...Plug Ins Guide Netscape Certificate Management System Version6 0 March 2002...
Page 10: ...10 Netscape Certificate Management System Plug Ins Guide March 2002...
Page 62: ...Enrollment Forms 62 Netscape Certificate Management System Plug Ins Guide March 2002...
Page 308: ...NTEventLog Plug in Module 308 Netscape Certificate Management System Plug Ins Guide March 2002...