TPS Configuration Parameters
213
Parameter
Description
op.format.
tokenType
.update.applet.requiredVersionThe version of the applet to use. It should be
the file name of the applet without the
.ijc
extension.
op.format.
tokenType
.update.applet.directory
The local filesystem directory where the applets
are located
op.format.
tokenType
.update.symmetricKeys.enableSpecifies if the key changeover feature should
be enabled. The valid values are
true|
false
. When enabled, TPS checks to see
the key version sent by the token matches
symmetricKeys.requiredVersion
.
op.format.
tokenType
.update.symmetricKeys.requiredVersion
The required key version.
op.format.
tokenType
.revokeCert
Specifies if TPS should revoke the certificates
associated with the token during this format
operation. The default is
true
. The valid values
are
true|false
.
op.format.
tokenType
.ca.conn
The CA connection to use.
op.format.
tokenType
.loginRequest.enable
Specifies if the login request should be
sent to the token. This parameter enables
authentication. The valid values are
true|
false
.
op.format.
tokenType
.tks.conn
The TKS connection to use.
op.format.
tokenType
.auth.id
The LDAP authentication instance to use. The
default value is
ldap1
.
op.format.
tokenType
.auth.enable
Specifies whether to authenticate the user
information. The valid values are
true|false
.
op.format.
tokenType
.issuerinfo.enable
Specifies whether the Phone Home information
for the Enterprise Security Client is set. The valid
values are
true|false
.
op.format.
tokenType
.issuerinfo.value
Sets the Phone Home URL; this is the URL for
the TPS which the Enterprise Security Client will
contact for token operations; this value is set
on the token when it is formatted. For example,
https://tps.example.com:7888/cgi-
bin/home/index.cgi
.
Table 8.10. Format Operation Preferences
Parameter
Description
tokendb.auditLog
The full path to the audit log file. For example,
/var/lib/rpki-tps/logs/tokendb-
audit.log
.
tokendb.hostport
The token database (LDAP) hostname and port
number. The format is
hostname:port
.
tokendb.bindDN
The bind DN to bind to the token database. The
default value is
cn=directory manager
.
Summary of Contents for CERTIFICATE SYSTEM 7.3 - ADMINISTRATION
Page 15: ...xv Index 525 ...
Page 16: ...xvi ...
Page 38: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Page 82: ...Chapter 2 Installation and Configuration 60 rpm ev rhpki manage ...
Page 154: ...132 ...
Page 194: ...172 ...
Page 238: ...216 ...
Page 244: ...222 ...
Page 246: ...224 ...
Page 286: ...264 ...
Page 292: ...270 ...
Page 318: ...Chapter 13 Certificate Profiles 296 Parameter IssuerType_n IssuerName_n ...
Page 321: ...Freshest CRL Extension Default 299 Parameter PointName_n PointIssuerName_n ...
Page 398: ...376 ...
Page 412: ...390 ...
Page 472: ...450 ...
Page 506: ...484 ...
Page 528: ...506 ...
Page 546: ...524 ...