iii
About This Guide v
1. Required Concepts .......................................................................................................... v
2. What Is in This Guide ..................................................................................................... v
3. Examples and Formatting ............................................................................................... vi
3.1. Formatting for Examples and Commands .............................................................. vi
3.2. Tool Locations ..................................................................................................... vi
3.3. Guide Formatting ................................................................................................. vi
4. Additional Reading ......................................................................................................... vii
5. Giving Feedback ........................................................................................................... viii
6. Document History ........................................................................................................... ix
1. Agent Services 1
1.1. Overview of Certificate System ..................................................................................... 1
1.1.1. Certificate System Subsystems .......................................................................... 1
1.1.2. Certificate System Users .................................................................................... 3
1.2. Agent Tasks ................................................................................................................. 3
1.2.1. Certificate Manager Agent Services .................................................................... 4
1.2.2. Registration Manager Agent Services ................................................................. 6
1.2.3. Data Recovery Manager Agent Services ............................................................. 7
1.2.4. Online Certificate Status Manager Agent Services ............................................... 7
1.2.5. Token Processing System Agent Services ........................................................... 8
1.3. Accessing Agent Services ........................................................................................... 10
1.4. Using and Recovering Agent Certificates ..................................................................... 12
1.5. Using Java Servlets with Subsystem Web Forms ......................................................... 13
1.6. Supported Web Browsers ........................................................................................... 13
1.7. Supported Character Sets ........................................................................................... 13
1.8. Configuring Internet Explorer to Enroll Certificates ........................................................ 14
2. CA: Working with Certificate Profiles 17
2.1. About Certificate Profiles ............................................................................................ 17
2.2. Example caUserCert Profile ........................................................................................ 18
2.3. List of Certificate Profiles ............................................................................................ 21
2.4. Enabling and Disabling Certificate Profiles ................................................................... 25
2.4.1. Viewing Certificate Profile Information ............................................................... 25
2.4.2. Enabling or Disabling a Certificate Profile .......................................................... 27
3. CA: Handling Certificate Requests 29
3.1. Managing Requests .................................................................................................... 29
3.2. Listing Certificate Requests ......................................................................................... 31
3.2.1. Selecting a Request ........................................................................................ 33
3.2.2. Searching for Certificates (Advanced) ............................................................... 34
3.3. Approving Requests ................................................................................................... 40
3.4. Sending an Issued Certificate to the Requester ............................................................ 42
4. CA: Finding and Revoking Certificates 45
4.1. Listing Certificates ...................................................................................................... 45
4.2. Searching for Certificates (Advanced) .......................................................................... 46
4.3. Examining Certificate Details ....................................................................................... 50
4.4. Revoking Certificates .................................................................................................. 51
4.4.1. Revoking Certificates ....................................................................................... 52
4.4.2. Taking Ceritificates Off Hold ............................................................................. 54
4.5. Managing the Certificate Revocation List ..................................................................... 55
4.5.1. Viewing or Examining CRLs ............................................................................. 55