CEP Enrollment
Chapter
9
Authentication
417
a.
In the CMS window of the Certificate Manager or Registration Manager
that processes certificate requests, select the Configuration tab.
b.
Select Authentication in the navigation tree.
The right pane shows the Authentication Instance tab listing currently
configured authentication instances.
c.
Click Add.
The Select Authentication Plug-in Implementation window appears.
d.
Select the
FlatFileAuth
plug-in module.
e.
Click Next.
The Authentication Instance Editor window appears.
f.
Fill in the following fields in the Authentication Instance Editor window:
authName.
Provides a reference to the auths.instance authentication
plug-in described in the
auths.instance.*
configuration parameters. If
you want to turn off automated enrollment for CEP-based requests, delete
this parameter from the configuration file.
fileName.
Specifies the filename of an authentication-token file. Be sure to
use the full path name.
keyAttributes.
Specifies a comma-separated list of attributes in the request
which together, uniquely identify an entry in the authentication-token file.
The list of attributes you specify here must be contained in the
authentication-token file, and they must be present in the request. The
plugin then verifies the attributes provided in the request against those
contained in the authentication-token file. Your choices for this value are:
UNSTRUCTUREDNAME
,
UNSTRUCTUREDADDRESS
, and
SERIALNUMBER
.
authAttributes.
Specifies a comma-separated list of attributes from the
CEP request which must match the attributes specified in the
authentication-token file for authentication to succeed. Currently the most
useful thing to put in this parameter is
pwd
, the challenge password from
the request.
deferOnFailure.
Specifies whether the server should defer CEP requests
that fail authentication.
true
specifies that the server should defer
CEP-enrollment requests that fail authentication; the deferred requests get
queued for agent approval.
false
specifies that the server should reject
CEP-enrollment requests that fail authentication.
Summary of Contents for Certificate Management System 6.1
Page 1: ...Administrator s Guide Netscape Certificate Management System Version6 1 February 2003...
Page 28: ...Documentation 28 Netscape Certificate Management System Administrator s Guide February 2003...
Page 82: ...Uninstalling CMS 82 Netscape Certificate Management System Administrator s Guide February 2003...
Page 382: ...ACL Reference 382 Netscape Certificate Management System Administrator s Guide February 2003...
Page 794: ...Managing Certificates 794 Managing Servers with Netscape Console December 2001...
Page 810: ...The SSL Handshake 810 Managing Servers with Netscape Console December 2001...
Page 828: ...828 Netscape Certificate Management System Administrator s Guide February 2003...