![Netscape Certificate Management System 6.0 Manual Download Page 90](http://html1.mh-extra.com/html/netscape/certificate-management-system-6-0/certificate-management-system-6-0_manual_1674687090.webp)
AttributePresentConstraints Plug-in Module
90
Netscape Certificate Management System Plug-Ins Guide • March 2002
ldap.ldapauth.
clientCertNick
name
Specifies the nickname or the friendly name of the certificate to be used for SSL client
authentication to the LDAP directory in order to check attributes. Make sure that the
certificate is valid and has been signed by a CA that is trusted in the directory’s
certificate database, and that the directory’s
certmap.conf
file has been configured
to correctly map the certificate to a DN in the directory. (This is needed for PIN
removal only.)
Permissible values: Enter the name of a currently valid CMS certificate, for example,
its SSL server certificate.
Example:
Server-Cert
ldap.ldapauth.
authtype
Specifies how to bind to the directory or the authentication type—basic
authentication or SSL client authentication—required in order to check attributes in
the LDAP directory.
Permissible values:
BasicAuth
or
SslClientAuth
.
•
BasicAuth
specifies basic authentication (default). If you choose this option, be
sure to enter the correct values for
ldap.ldapauth.bindDN
and
password
parameters; the plug-in uses the DN from the ldap
.ldapauth.bindDN
attribute
to bind to the directory.
•
SslClientAuth
specifies SSL client authentication. If you choose this option, be
sure to select the
ldap.ldapconn.secureConn
parameter and set the value of
the
ldap.ldapauth.clientCertNickname
parameter to the nickname of the
certificate to be used for SSL client authentication.
Example:
BasicAuth
ldap.ldapconn.
basedn
Specifies the base DN for searching the LDAP directory—the plug-in uses the value
of the
uid
field from the HTTP input (what a user enters in the enrollment from) and
the base DN to construct an LDAP search filter.
Permissible values: Any valid DN string of up to 255 characters. (If your user’s DN is
uid=jdoe, o=company,
you might want to use
o=company
here.)
Example:
O=example.com
ldap.ldapconn.
minConns
Specifies the minimum number of connections permitted (or to keep open) to the
LDAP directory.
Permissible values:
1
to
3
; the default value is
1
.
Example:
3
Table 3-2
Description of parameters defined in the AttributePresentConstraints module (Continued)
Parameter
Description
Summary of Contents for Certificate Management System 6.0
Page 1: ...Plug Ins Guide Netscape Certificate Management System Version6 0 March 2002...
Page 10: ...10 Netscape Certificate Management System Plug Ins Guide March 2002...
Page 62: ...Enrollment Forms 62 Netscape Certificate Management System Plug Ins Guide March 2002...
Page 308: ...NTEventLog Plug in Module 308 Netscape Certificate Management System Plug Ins Guide March 2002...