Default OCSP Instance Information
117
Setting
Value
Storage certificate
SSL server certificate
Audit log signing certificate
Subsystem certificate
1
Security Databases
/var/lib/pki-kra/alias
Log Files
/var/log/pki-kra
Install Logs
/var/log/pki-kra-install.log
Process File
/var/run/pki-kra.pid
Web Services Files
/var/lib/pki-kra/webapps - Agent services
/var/lib/pki-kra/webapps.admin - Admin services
The subsystem certificate is always issued by the security domain so that domain-level operations that require client
authentication are based on this subsystem certificate.
Table 9.5. Default KRA Instance Information
9.5.4. Default OCSP Instance Information
The default OCSP configuration is listed in
Table 9.6, “Default OCSP Instance Information”
. Most of
these values are unique to the default instance; the default certificates and some other settings are
true for every OCSP instance.
Setting
Value
Standard Port
11180
End Users Secure Port
11444
Agents Port
11443
Admin Port
11445
Tomcat Port
11701
Instance Name
pki-ocsp
Main Directory
/var/lib/pki-ocsp
Configuration Directory
/etc/pki-ocsp
Configuration File
/etc/pki-ocsp/CS.cfg
/etc/pki-ocsp/password.conf
Subsystem Certificates
OCSP signing certificate
SSL server certificate
Audit log signing certificate
Subsystem certificate
1
Security Databases
/var/lib/pki-ocsp/alias
Log Files
/var/log/pki-ocsp
Install Logs
/var/log/pki-ocsp-install.log
Process File
/var/run/pki-ocspocsp.pid
Web Services Files
/var/lib/pki-ocsp/webapps - Agent services
Summary of Contents for CERTIFICATE SYSTEM 8 - DEPLOYMENT
Page 5: ...v 9 5 7 Shared Certificate System Subsystem File Locations 119 Index 121 ...
Page 6: ...vi ...
Page 18: ...8 ...
Page 32: ...22 ...
Page 70: ...60 ...
Page 104: ...94 ...
Page 114: ...104 ...
Page 118: ...108 ...
Page 132: ...122 ...