certServer.kra.connector
421
|| group="Certificate Manager Agents"
|| group="Data Recovery Manager Agents"
|| group="Online Certificate Status Manager Agents"
allow (modify) group="Administrators"
Administrators, auditors, and agents are allowed to read DRM general configuration; only
administrators are allowed to modify DRM configuration.
17.7.36. certServer.kra.connector
Controls request submissions.
17.7.36.1. Operations
Operations
Description
submit
Submit requests.
17.7.36.2. Default ACIs
allow (submit) group="Trusted Managers"
Only trusted managers can submit requests.
17.7.37. certServer.kra.key
Controls read, recover, and download operations for the DRM.
17.7.37.1. Operations
Operations
Description
read
Display a key recovery request.
recover
Indicate that a DRM has approved the key recovery. Finalize a
key recovery operation.
download
Download a PKCS#12 file containing a private key.
17.7.37.2. Default ACIs
allow (read,recover,download) group="Data Recovery Manager Agents"
Only DRM agents can read, recover, or retrieve key information.
17.7.38. certServer.kra.keys
Controls list operations for the DRM.
Summary of Contents for CERTIFICATE SYSTEM 7.3 - ADMINISTRATION
Page 15: ...xv Index 525 ...
Page 16: ...xvi ...
Page 38: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Page 82: ...Chapter 2 Installation and Configuration 60 rpm ev rhpki manage ...
Page 154: ...132 ...
Page 194: ...172 ...
Page 238: ...216 ...
Page 244: ...222 ...
Page 246: ...224 ...
Page 286: ...264 ...
Page 292: ...270 ...
Page 318: ...Chapter 13 Certificate Profiles 296 Parameter IssuerType_n IssuerName_n ...
Page 321: ...Freshest CRL Extension Default 299 Parameter PointName_n PointIssuerName_n ...
Page 398: ...376 ...
Page 412: ...390 ...
Page 472: ...450 ...
Page 506: ...484 ...
Page 528: ...506 ...
Page 546: ...524 ...