Installing and Configuring iFolder Services
79
no
vd
ocx
(e
n)
13
Ma
y 20
09
CA to create and distribute a new certificate before expiration. The extensions can contain any
additional information. An application is only required to be able to evaluate an extension if it is
identified as critical. If an application does not recognize a critical extension, it must reject the
certificate. Some extensions are only useful for a specific application, such as signature or
encryption.
Table 6-1
X.509v3 Certificate
YaST-Based PKI:
YaST contains modules for the basic management of X.509 certificates. This
mainly involves the creation of CAs and their certificate. YaST provides tools for creating and
distributing CAs and certificates, but cannot currently offer the background infrastructure that allow
continuous update of certificates and CRLs. To set up a small PKI, you can use the available YaST
modules. However, you should use commercial products to set up an official or commercial PKI.
6.6.2 Creating a YaST-based CA
1
Start YaST and go to
Security and Users > CA Management
.
2
Click
Create Root CA
.
Field
Content
Version
The version of the certificate, for example, v3
Serial Number
Unique certificate ID (an integer)
Signature
The ID of the algorithm used to sign the certificate
Issuer
Unique name (DN) of the issuing authority (CA)
Validity Period
of
validity
Subjectr
Unique name (DN) of the owner
Subject Public Key Info
InfoPublic key of the owner and the ID of the
algorithm
Issuer Unique ID
Unique ID of the issuing CA (optional)
Subject Unique ID
Unique ID of the owner (optional)
Extensions
Optional additional information, such as KeyUsage
or BasicConstraints
Содержание IFOLDER 3.7 - SECURITY ADMINISTRATION
Страница 12: ...12 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 24: ...24 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 38: ...38 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 98: ...98 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 100: ...100 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 102: ...102 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 162: ...162 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 168: ...168 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 172: ...172 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 182: ...182 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 184: ...184 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 196: ...196 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 202: ...202 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Страница 216: ...216 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...