848
Netscape Certificate Management System Installation and Setup Guide • October 2001
servlet
Java code that handles a particular kind of interaction with end entities
on behalf of a CMS manager. For example, certificate enrollment, renewal,
revocation, and key recovery requests are each handled by separate servlets.
SHA-1
Secure Hash Algorithm, a hash function used by the US Government.
signature algorithm
A cryptographic algorithm used to create digital signatures.
Certificate Management System supports the MD5 and SHA-1 signing algorithms.
See also cryptographic algorithm, digital signature.
signing certificate
A certificate whose public key corresponds to a private key
used to create digital signatures. For example, Certificate Manager must have a
signing certificate whose public key corresponds to the private key it uses to sign
the certificates it issues. A Registration Manager must have a signing certificate
whose public key corresponds to the private key it uses to sign the certificate
requests it sends to the Certificate Manager.
signing key
A private key used for signing only. A signing key and its equivalent
public key, plus an encryption key and its equivalent public key, constitute a dual
key pair.
single sign-on
1. In Certificate Management System, a password that simplifies
the way you sign on to Netscape Certificate Management System by storing the
passwords for the internal database and tokens. Each time you log on, you’re
required to enter just this single password. 2. The ability for a user to log in once to
a single computer and be authenticated automatically by a variety of servers within
a network. Partial single sign-on solutions can take many forms, including
mechanisms for automatically tracking passwords used with different servers.
Certificates support single sign-on within a public-key infrastructure (PKI). A user
can log in once to a local client's private-key database and thereafter, as long as the
client software is running, rely on certificate-based authentication to access each
server within an organization that the user is allowed to access.
slot
The portion of a PKCS #11 module (implemented in either hardware or
software) that contains a token.
smart card
A small device, typically about the size of a credit card, that contains a
microprocessor and is capable of storing cryptographic information (such as keys
and certificates) and performing cryptographic operations. Smart cards implement
some or all of the PKCS #11 interface.
Summary of Contents for NETSCAPE MANAGEMENT SYSTEM 4.5
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version4 5 October 2001...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 162: ...162 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 796: ...796 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 827: ...827 Part 5 Appendix Appendix A Certificate Download Specification...
Page 828: ...828 Netscape Certificate Management System Installation and Setup Guide October 2001...
Page 850: ...850 Netscape Certificate Management System Installation and Setup Guide October 2001...