Groups and Their Privileges
400
Netscape Certificate Management System Installation and Setup Guide • October 2001
Groups for Agents
Depending on the subsystems you chose to install, Certificate Management System
automatically creates a combination of the following groups for a CMS instance:
•
Certificate Manager Agents
group, if you have installed the Certificate
Manager
•
Registration Manager Agents
group, if you have installed the Registration
Manager
•
Data Recovery Manager Agents
group, if you have installed the Data
Recovery Manager
•
Online Certificate Status Manager Agents
group, if you have installed
the Online Certificate Status Manager
Group for Certificate Manager Agents
When the Certificate Manager is installed, a group called
Certificate Manager
Agents
is automatically created in its internal database. After installation, this
group has a single user entry—when you get the first agent certificate from the
Certificate Manager (see “Stage 3. Enrolling for Administrator/Agent Certificate”
on page 275), the server automatically adds the initial administrator as the agent
and stores a copy of the agent certificate against that user entry. The user ID for this
agent user is the same as the certificate administrator ID, as specified during
installation.
The
Certificate Manager Agents
group has access rights to agent-specific
resources of the Certificate Manager; that is, privileged users you add to this group
automatically inherit access rights to the agent port of the Certificate Manager. For
information on ports, see “CMS Ports” on page 371.
After installation, you should add to this group the privileged users to whom you
want to assign Certificate Manager agent privileges. All agents who belong to the
Certificate Manager Agents
group can access the Certificate Manager Agent
Services interface; see “Certificate Manager Agent Services” on page 68.
For an agent to be able to carry on SSL client-authenticated communication with a
Certificate Manager, you need to do additional configurations. See “Setting Up
Agents” on page 406.
Group for Registration Manager Agents
When the Registration Manager is installed, a group called
Registration
Manager Agents
is automatically created in its internal database. By default, this
group has no entries.
Summary of Contents for NETSCAPE MANAGEMENT SYSTEM 4.5
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version4 5 October 2001...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 162: ...162 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 796: ...796 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 827: ...827 Part 5 Appendix Appendix A Certificate Download Specification...
Page 828: ...828 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 850: ...850 Netscape Certificate Management System Installation and Setup Guide October 2001...