![Red Hat CERTIFICATE 7.1 ADMINISTRATOR Скачать руководство пользователя страница 632](http://html.mh-extra.com/html/red-hat/certificate-7-1-administrator/certificate-7-1-administrator_administrators-manual_1427416632.webp)
Configuring the Directory for LDAP Publishing
632
Red Hat Certificate System Administrator’s Guide • September 2005
For example, if the base-64 encoded certificate is in
C:\certificates\cert-1234.txt
and you want the human-readable form of
the certificate to be displayed on your screen, the command would look like this:
PrettyPrintCert C:\certificates\cert-1234.txt
When the conversion is complete, you should see the certificate you issued in
human-readable form.
c.
Compare the output with the certificate you issued; be sure to check the serial
number in the certificate with the one used in the filename.
If everything matches, the Certificate Manager is configured correctly to publish
certificates to files.
7.
Revoke the Certificate.
8.
Check the File for the CRL
9.
Check whether the server generated the DER-encoded file containing the CRL.
To check whether the server published the CRL as a binary blob to the specified
directory, go to the directory you specified for the server to publish CRLs. You should
find a file with its name in the
crl-<this_update>.der
format, where
<this_update>
specifies the value derived from the time-dependent variable named
This Update
of the CRL contained in the file. If you don’t see the file, check your
configuration.
10.
Convert the DER-encoded CRL to its base 64-encoded format using the Binary to
ASCII tool. See step 5 for directions.
11.
Convert the base 64-encoded CRL to a human-readable form using the Pretty Print
CRL tool. See step 6 for directions.
12.
Repeat this test for each kind of certificate or CRL you are issuing. Remember to check
for the published certificate or CRL in all the places you set up publishing for the
certificate or CRL.
Configuring the Directory for LDAP Publishing
Before you can use a directory for publishing of certificates and CRLs, you must configure
that directory to work correctly with your publishing system. The following sections detail
what you will need to configure:
•
Schema
•
Entry for the CA
Содержание CERTIFICATE 7.1 ADMINISTRATOR
Страница 1: ...Administrator s Guide Red Hat Certificate System Version7 1 September 2005 ...
Страница 22: ...22 Red Hat Certificate System Administrator s Guide September 2005 ...
Страница 128: ...Cloning a CA 128 Red Hat Certificate System Administrator s Guide September 2005 ...
Страница 230: ...Configuring Key Archival and Recovery Process 230 Red Hat Certificate System Administrator s Guide September 2005 ...
Страница 234: ...Enterprise Security Client 234 Red Hat Certificate System Administrator s Guide September 2005 ...
Страница 368: ...ACL Reference 368 Red Hat Certificate System Administrator s Guide September 2005 ...
Страница 460: ...Constraints Reference 460 Red Hat Certificate System Administrator s Guide September 2005 ...
Страница 592: ...CRL Extension Reference 592 Red Hat Certificate System Administrator s Guide September 2005 ...
Страница 676: ...Cloning the Data Recovery Manager 676 Red Hat Certificate System Administrator s Guide September 2005 ...
Страница 688: ...Security Requirements for the IT Environment 688 Red Hat Certificate System Administrator s Guide September 2005 ...
Страница 720: ...1 3 Organization Security Policies 720 Red Hat Certificate System Administrator s Guide September 2005 ...