Automated Notifications
552
Netscape Certificate Management System Installation and Setup Guide • October 2001
•
Notification of New Request in Queue—agents are notified by email that a
request has been added to the request queue. Alternatively (or in addition) a
schedulable job can notify agents at regular intervals of the current state of the
request queue; see “Configuring a Subsystem to Run Automated Jobs” on
page 565.
Notifications of Certificate Issuance to End
Entities
You can configure the Certificate Manager or Registration Manager to send a
notification message to users who have been issued certificates in response to
enrollment requests. This message normally includes information about the issued
certificate and instructions for importing the certificate into the user’s client.
This kind of notification involves a listener class in the subsystem that registers an
interest in an appropriate event, in this case successful completion of an enrollment
request. In the CMS configuration, this listener class for a Certificate Manager is
defined as
ca.notification.certIssued
and for the Registration Manager it is
defined as
ra.notification.certIssued
.
For more information on listeners, check the
samples
directory:
<server_root>/cms_sdk/cms_jdk/samples/listeners
When a certificate is issued, the listener builds a notification message based on a
configured template and sends it to an email address that it determines by using an
email resolver. By default the email is obtained from the email address entered in
the request or from the certificate.
•
The email resolver first checks the request for the email address and if doesn’t
find one, it checks the subject name of the certificate for the email address; if
the subject name doesn’t include the email address, the resolver checks the
certificate for the Subject Alternative Name extension to see whether it
specifies the email address. For specifying an email address in the Subject
Alternative Name extension, see “Configuring Policy Rules for a Subsystem”
on page 589.
•
In the absence of an email address, the notification is sent to the email address
specified in the “Sender’s Email Address” field, instead of the requestor, as an
undeliverable notification. There’ll also be a message to this effect in the logs;
see “Monitoring CMS Logs” on page 779.
Summary of Contents for NETSCAPE MANAGEMENT SYSTEM 4.5
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version4 5 October 2001...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 162: ...162 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 796: ...796 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 827: ...827 Part 5 Appendix Appendix A Certificate Download Specification...
Page 828: ...828 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 850: ...850 Netscape Certificate Management System Installation and Setup Guide October 2001...