Certificate Management
229
Novell Certificate Server
The component that generates eDirectory keys and certificates is the Novell Certificate Server.
This certificate server provides public key cryptography services that are natively integrated into
Novell eDirectory. You use the server to can mint, issue, and manage both user and server
certificates to protect confidential data transmissions over public communications channels such as
the Internet.
For complete information on the Novell Certificate Server, see the
Novell Certificate Server 3.3.4
Administration Guide
.
Server Self-Provisioning
When activated, Server Self-Provisioning lets server objects in eDirectory create their own
certificates. You must activate this option if you want PKI Health Check to automatically maintain
your server certificates.
For more information on this feature, see “
X.509 Certificate Self-Provisioning
” in the
Novell
Certificate Server 3.3.4 Administration Guide
.
PKI Health Check
The PKI health check runs whenever the certificate server starts.
If you have enabled Server Self-Provisioning, the health check routine automatically replaces server
certificates when any of the following are detected:
The certificates don’t exist.
The certificates have expired.
The certificates are about to expire.
The IP or DNS information on the certificates doesn’t match the server configuration.
The Certificate Authority (CA) that issued the certificate is different from the CA currently
configured.
For more information on this feature, see “
PKI Health Check
” in the
Novell Certificate Server 3.3.4
Administration Guide
.
/etc/opt/novell/certs
This directory contains the eDirectory CA certificate in both
DER and PEM formats for use by applications that need them.
The files are named
SSCert.der
and
SSCert.pem
,
respectively.
For example, when PKI Health Check runs, it installs the CA
certificate in the Java Keystore in DER format if the certificate
needs replacing.
Location
Details
Содержание OPEN ENTERPRISE SERVER - CONVERSION GUIDE 12-2010
Страница 12: ...12 OES 2 SP3 Planning and Implementation Guide...
Страница 24: ...24 OES 2 SP3 Planning and Implementation Guide...
Страница 50: ...50 OES 2 SP3 Planning and Implementation Guide...
Страница 74: ...74 OES 2 SP3 Planning and Implementation Guide...
Страница 78: ...78 OES 2 SP3 Planning and Implementation Guide...
Страница 80: ...80 OES 2 SP3 Planning and Implementation Guide...
Страница 96: ...96 OES 2 SP3 Planning and Implementation Guide...
Страница 146: ...146 OES 2 SP3 Planning and Implementation Guide...
Страница 176: ...176 OES 2 SP3 Planning and Implementation Guide...
Страница 210: ...210 OES 2 SP3 Planning and Implementation Guide...
Страница 218: ...218 OES 2 SP3 Planning and Implementation Guide...
Страница 226: ...226 OES 2 SP3 Planning and Implementation Guide...
Страница 234: ...234 OES 2 SP3 Planning and Implementation Guide...
Страница 236: ...236 OES 2 SP3 Planning and Implementation Guide...
Страница 244: ...244 OES 2 SP3 Planning and Implementation Guide...
Страница 246: ...246 OES 2 SP3 Planning and Implementation Guide...
Страница 250: ...250 OES 2 SP3 Planning and Implementation Guide...
Страница 254: ...254 OES 2 SP3 Planning and Implementation Guide...
Страница 258: ...258 OES 2 SP3 Planning and Implementation Guide...
Страница 284: ...284 OES 2 SP3 Planning and Implementation Guide...
Страница 286: ...286 OES 2 SP3 Planning and Implementation Guide...
Страница 294: ...294 OES 2 SP3 Planning and Implementation Guide...