Setting Up Privileged Users
Chapter
13
Managing Privileged Users and Groups
413
Setting Up Trusted Managers
You can set up a Registration Manager or Certificate Manager to function as a
trusted manager to another CMS instance. This section explains how to do this.
•
Setting up Trusted Managers Using the Automated Process
•
Setting Up a Registration Manager as a Trusted Manager
•
Setting Up a Certificate Manager as a Trusted Manager
To understand the role of a trusted manager in your PKI, see “Trusted Managers”
on page 394.
Setting up Trusted Managers Using the Automated Process
Certificate Management System automates the process of setting up trusted
managers. The automated process is built into the request-approval form (the page
that displays the pending request) in the Agent Services interface and it enables the
person who has both Certificate Manager agent and Administrator privileges to create
new trusted managers for a CMS instance—that is, the Certificate Manager agent
who approves the subsystems’ certificate requests must belong to both the
Certificate Manager Agents and Administrators groups in the user and group
database of the Certificate Manager. For more information about these groups, see
“Groups and Their Privileges” on page 398.
•
The request-approval form for Certificate Manager’s SSL server certificate
request includes a checkbox labeled “This certificate is for a Trusted Manager.”
•
Similarly, The request-approval form for Registration Manager’s signing
certificate request includes a checkbox labeled “This certificate is for a Trusted
Manager.”
If selected, the checkbox indicates that the subsystem that has requested the
certificate must be made a trusted manager. Selecting the checkbox also requires
the agent to specify an ID for the subsystem that will be set up as a trusted
manager.
If the Certificate Manager agent approves the certificate request with the checkbox
selected and user ID specified, the server automatically adds the subsystem as a
new privileged user to its user and group database, adds the user to the Trusted
Managers group, copies the corresponding certificate to the database, and
associates the certificate with the new user’s entry.
Summary of Contents for NETSCAPE MANAGEMENT SYSTEM 4.5
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version4 5 October 2001...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 162: ...162 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 796: ...796 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 827: ...827 Part 5 Appendix Appendix A Certificate Download Specification...
Page 828: ...828 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 850: ...850 Netscape Certificate Management System Installation and Setup Guide October 2001...