Topology Decisions
Chapter
4
Planning Your Deployment
169
Figure 4-3
Certificate Manager and Data Recovery Manager in different instances
The Data Recovery Manager is intended for archival and recovery of private
encryption keys only. Therefore end entities must be using either a browser that
supports dual-key generation or a browser that is using Netscape Personal Security
Manager, which supports dual keys.
The decision to keep the Data Recovery Manager in the same instance as the
Certificate Manager or in a different instance (most likely on a different machine)
depends on many factors. These include firewall considerations, the physical
security required for each subsystem, and the physical location of the Certificate
Manager agent, Data Recovery Manager agent, and other persons responsible for
administering the Certificate Manager and recovering keys.
Summary of Contents for NETSCAPE MANAGEMENT SYSTEM 4.5
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version4 5 October 2001...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 162: ...162 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 796: ...796 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 827: ...827 Part 5 Appendix Appendix A Certificate Download Specification...
Page 828: ...828 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 850: ...850 Netscape Certificate Management System Installation and Setup Guide October 2001...