
AttributePresentConstraints Plug-in Module
Chapter
3
Constraints Policy Plug-in Modules
89
predicate
Specifies the predicate expression for this rule. If you want the rule to be applied to
all certificate requests, leave the field blank (default). To form a predicate expression,
see section “Using Predicates in Policy Rules” in Chapter 18, “Setting Up Policies” of
CMS Installation and Setup Guide.
Example:
HTTP_PARAMS.certType==client
ldap.ldapconn.
host
Specifies the host name of the LDAP directory to connect to.
Permissible values: The name must be fully-qualified host name in the
<machine_name>.<your_domain>.<domain>
form.
Example:
corpDirectory.example.com
ldap.ldapconn.
port
Specifies the TCP/IP port at which the LDAP directory listens to requests from
Certificate Management System.
Permissible values: Any valid port number. The default is 389; use 636 if the directory
is configured for SSL-enabled communication.
Example:
389
ldap.ldapconn.
secureConn
Specifies the type—SSL or non-SSL—of the port at which the LDAP directory listens
to requests from Certificate Management System.
• Check the box if the port is an SSL (HTTPS) port. If your directory is configured
for SSL-enabled communication (with or without SSL client authentication),
choose this option.
• Leave the box unchecked if the port is a non-SSL (HTTP) port. If your directory is
configured for basic authentication, choose this option (default).
ldap.ldapconn.
version
Specifies the LDAP protocol version.
Permissible values:
2
or
3
.
•
2
specifies LDAP version 2. If your directory is based on Netscape Directory
Server 1.x, choose
2
.
•
3
specifies LDAP version 3. For Directory Server versions 3.x and later, choose
3
(default).
Example:
3
ldap.ldapauth.
bindDN
Specifies the user entry to bind as for checking the attribute in the LDAP directory.
Permissible values: A valid bind DN.
Example:
CN=pinmanager
password
Specifies the password associated with the DN specified by the
ldap.ldapauthbindDN
parameter.
Table 3-2
Description of parameters defined in the AttributePresentConstraints module (Continued)
Parameter
Description
Содержание Certificate Management System 6.0
Страница 1: ...Plug Ins Guide Netscape Certificate Management System Version6 0 March 2002...
Страница 10: ...10 Netscape Certificate Management System Plug Ins Guide March 2002...
Страница 62: ...Enrollment Forms 62 Netscape Certificate Management System Plug Ins Guide March 2002...
Страница 126: ...ValidityConstraints Plug in Module 126 Netscape Certificate Management System Plug Ins Guide March 2002...
Страница 266: ...LdapSubjAttrMap Plug in Module 266 Netscape Certificate Management System Plug Ins Guide March 2002...
Страница 308: ...NTEventLog Plug in Module 308 Netscape Certificate Management System Plug Ins Guide March 2002...
Страница 324: ...DNs in Certificate Management System 324 Netscape Certificate Management System Plug Ins Guide March 2002...
Страница 370: ...CA Certificates and Extension Interactions 370 Netscape Certificate Management System Plug Ins Guide March 2002...