AuthInfoAccessExt Plug-in Module
Chapter
4
Certificate Extension Plug-in Modules
135
Figure 4-2
Parameters defined in the AuthInfoAccessExt module
The configuration shown in Figure 4-2 creates a policy rule named
AuthInfoAccessExtForClientCert
, which enforces a rule that the server should
add the authority information access extension to client certificates. The extension
indicates that the online validation service (or the OSCSP responder) for the CA
that has issued these certificates is at this URL:
http://ocspResponder.example.com:8000
The extension is marked noncritical (to comply with the PKIX recommendation).
Table 4-2 gives details about the configurable parameters defined in the
AuthInfoAccessExt
module.
Table 4-2
Description of parameters defined in the AuthInfoAccessExt module
Parameter
Description
enable
Specifies whether the rule is enabled or disabled. Check the box to enable the rule
(default). Uncheck the box to disable the rule.
• If you enable the rule and set the remaining parameters correctly, the server adds
the authority information access extension to certificates specified by the
predicate
parameter.
• If you disable the rule, the server does not add the extension to certificates; it
ignores the values in the remaining fields.
Summary of Contents for Certificate Management System 6.01
Page 1: ...Plug Ins Guide Netscape Certificate Management System Version6 01 May 2002...
Page 10: ...10 Netscape Certificate Management System Plug Ins Guide May 2002...
Page 62: ...Enrollment Forms 62 Netscape Certificate Management System Plug Ins Guide May 2002...
Page 308: ...NTEventLog Plug in Module 308 Netscape Certificate Management System Plug Ins Guide May 2002...