Chapter 15. Publishing
366
15.13.1.5. LdapDeltaCrlPublisher
The
LdapDeltaCrlPublisher
plug-in module configures a Certificate Manager to publish or
unpublish a delta CRL to the
deltaRevocationList;binary
attribute of a directory entry.
During installation, the Certificate Manager automatically creates an instance of the
LdapDeltaCrlPublisher
module for publishing CRLs to the directory.
Parameter
Description
crlAttr
Specifies the directory attribute of the mapped
entry to which the Certificate Manager
should publish the delta CRL. This must be
deltaRevocationList;binary
.
Table 15.8. LdapDeltaCrlPublisher Configuration Parameters
15.13.1.6. LdapCertificatePairPublisher
The
LdapCertificatePairPublisher
plug-in module configures a Certificate Manager to publish
or unpublish a cross-signed certificate to the
crossCertPair;binary
attribute of the CA's directory
entry.
The module also converts the object class of the CA's entry to a
certificationAuthority
, if it
is not used already. Similarly, it also removes the
certificationAuthority
object class when
unpublishing if the CA has no other certificates.
During installation, the Certificate Manager automatically creates an instance of the
LdapCertificatePairPublisher
module named
LdapCrossCertPairPublisher
for
publishing the cross-signed certificates to the directory.
Parameter
Description
crossCertPairAttr
Specifies the LDAP directory attribute to
publish the CA certificate. This must be
crossCertificatePair;binary
.
caObjectClass
Specifies the object class for the CA's
entry in the directory. This must be
certificationAuthority
.
Table 15.9. LdapCertificatePairPublisher Parameters
15.13.1.7. OCSPPublisher
The
OCSPPublisher
plug-in module configures a Certificate Manager to publish its CRLs to an
Online Certificate Status Manager.
The Certificate Manager does not create any instances of the
OCSPPublisher
module at installation.
Parameter
Description
host
Specifies the fully qualified hostname of the
Online Certificate Status Manager.
port
Specifies the port number on which the Online
Certificate Status Manager is listening to the
Certificate Manager. This is the Online Certificate
Status Manager's SSL port number.
Summary of Contents for CERTIFICATE SYSTEM 7.3 - ADMINISTRATION
Page 15: ...xv Index 525 ...
Page 16: ...xvi ...
Page 38: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Page 82: ...Chapter 2 Installation and Configuration 60 rpm ev rhpki manage ...
Page 154: ...132 ...
Page 194: ...172 ...
Page 238: ...216 ...
Page 244: ...222 ...
Page 246: ...224 ...
Page 286: ...264 ...
Page 292: ...270 ...
Page 318: ...Chapter 13 Certificate Profiles 296 Parameter IssuerType_n IssuerName_n ...
Page 321: ...Freshest CRL Extension Default 299 Parameter PointName_n PointIssuerName_n ...
Page 398: ...376 ...
Page 412: ...390 ...
Page 472: ...450 ...
Page 506: ...484 ...
Page 528: ...506 ...
Page 546: ...524 ...