How a Registration Manager Works
160
Netscape Certificate Management System Administrator’s Guide • June 2003
change the content and the look and feel of the forms. You can also do this by
creating certificate profiles for each with a dynamically generated form associated
with each certificate profile. You customize the dynamically created certificate
profile forms by configuring the inputs associated with the certificate profile.
The Certificate Enrollment Process
When an end-entity enrolls in your PKI requesting a certificate, a number of things
can happen depending on your configuration and the subsystems you have
installed. The following lists those events in the approximate order they occur:
•
The end entity provides the information and submits a request. The
information gathered from the end entity is customizable in the form
depending on the information you want to collect, or you need to collect to
store in the certificate that is issued or to authenticate against the
authentication method associated with the form. The form creates a request
that is then submitted to the Registration Manager.
•
The enrollment form can trigger the creation of the public and private keys for
this request, or for dual-key pairs.
•
The end entity may have to provide some form of authentication before
submitting the request. You can configure directory-based authentication,
Pin-based authentication, certificate-based authentication, or NIS-based
authentication.
•
The request may be submitted using an agent-approved enrollment process or
an automated process.
❍
The agent-approved process sends the request to the request queue in the
agent services interface where an agent must process the request. An agent
can then change the status of the request, reject the request, or approve the
request. The agent can also change some aspects of the request.
You can set up an automated notification that send an email any time a
request appears in the queue to the agent, or an automated job that sends a
list of the contents of the queue to agents on a preconfigured schedule. See
Chapter 12, “Automated Notifications” and Chapter 13, “Automated
Jobs.”
❍
The automated process allows the certificate to be processed upon
successful authentication of the end entity. See Chapter 9,
“Authentication.”
Содержание Certificate Management System 6.2
Страница 1: ...Administrator s Guide Netscape Certificate Management System Version6 2 June 2003...
Страница 22: ...22 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 30: ...Documentation 30 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 70: ...Support for Open Standards 70 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 84: ...Uninstalling CMS 84 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 164: ...How a Registration Manager Works 164 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 322: ...Configuring the Server s Security Preferences 322 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 380: ...ACL Reference 380 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 564: ...Managing Policy Plug in Modules 564 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 744: ...1 3 Organization Security Policies 744 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 750: ...Object Identifiers 750 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 796: ...DNs in Certificate Management System 796 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 828: ...Managing Certificates 828 Netscape Certificate Manager System Administrator s Guide June 2003...
Страница 844: ...The SSL Handshake 844 Netscape Certificate Manager System Administrator s Guide June 2003...
Страница 862: ...862 Netscape Certificate Management System Administrator s Guide June 2003...