Creating Online Certificate Status Manager Agents and Administrators
161
Configuration
Section
Managing the access control lists (ACLs) for user
authorization.
Section 17.6, “Authorization for Certificate
System Users”
Requesting and installing certificates and
managing tokens.
•
Section 11.2, “Requesting and Receiving
Certificates”
•
Section 11.4.1, “Installing Certificates in the
Certificate System Database”
Installing a certificate chain in the database to
provide the chain of CAs to a trusted CA.
Section 11.4.1.3, “About CA Certificate Chains”
Managing tokens.
Section 12.1, “Tokens for Storing Certificate
System Keys and Certificates”
Changing the subsystem security settings.
Section 11.5, “Configuring the Server Certificate
Use Preferences”
Changing subsystem passwords
Section 3.3, “System Passwords”
Configuring the internal OCSP service.
Chapter 6, Online Certificate Status Protocol
Responder
Setting up CRLs and revoking certificates.
Chapter 14, Revocation and CRLs
Configuring cloning.
Chapter 20, Configuring the Certificate System
for High Availability
Table 6.1. General Subsystem Configuration Links
6.5. Creating Online Certificate Status Manager Agents and
Administrators
When the subsystem is configured, there is a default user created with both administrator and agent
privileges. This user can perform both administrator and agent operations and access the Console and
the agent services page.
To create additional administrator, agent, or auditor users, create a user in the Certificate System
instance where the user will have privileges and assign the user to the appropriate group. An agent
or auditor must have a certificate stored in the subsystem's internal database. If the Console is
configured for SSL client authentication, all administrators must also a certificate.
To create a new user entry, do the following:
1. Log into the administrative console.
pkiconsole https://server.example.com:9443/ca
2. In the
Configuration
tab, select
Users and Groups
. Click
Add
.
3. Fill in the information in the
Edit User Information
dialog.
Summary of Contents for CERTIFICATE SYSTEM 7.3 - ADMINISTRATION
Page 15: ...xv Index 525 ...
Page 16: ...xvi ...
Page 38: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Page 82: ...Chapter 2 Installation and Configuration 60 rpm ev rhpki manage ...
Page 154: ...132 ...
Page 194: ...172 ...
Page 238: ...216 ...
Page 244: ...222 ...
Page 246: ...224 ...
Page 286: ...264 ...
Page 292: ...270 ...
Page 318: ...Chapter 13 Certificate Profiles 296 Parameter IssuerType_n IssuerName_n ...
Page 321: ...Freshest CRL Extension Default 299 Parameter PointName_n PointIssuerName_n ...
Page 398: ...376 ...
Page 412: ...390 ...
Page 472: ...450 ...
Page 506: ...484 ...
Page 528: ...506 ...
Page 546: ...524 ...