Creating Online Certificate Status Manager Agents and Administrators
129
Configuration
Section
Managing the access control lists (ACLs) for user
authorization.
Section 16.6, “Authorization for Certificate
System Users”
Requesting and installing certificates and
managing tokens.
•
Section 10.2, “Requesting and Receiving
Certificates”
•
Section 10.4.1, “Installing Certificates in the
Certificate System Database”
Installing a certificate chain in the database to
provide the chain of CAs to a trusted CA.
Section 10.4.1.3, “About CA Certificate Chains”
Managing tokens.
Section 11.1, “Tokens for Storing Certificate
System Keys and Certificates”
Changing the subsystem security settings.
Section 10.5, “Configuring the Server Certificate
Use Preferences”
Changing subsystem passwords
Section 3.3, “System Passwords”
Configuring the internal OCSP service.
Chapter 5, Online Certificate Status Protocol
Responder
Setting up CRLs and revoking certificates.
Chapter 13, Revocation and CRLs
Configuring cloning.
Chapter 19, Configuring the Certificate System
for High Availability
Table 5.1. General Subsystem Configuration Links
5.5. Creating Online Certificate Status Manager Agents and
Administrators
When the subsystem is configured, there is a default user created with both administrator and agent
privileges. This user can perform both administrator and agent operations and access the Console and
the agent services page.
To create additional administrator, agent, or auditor users, create a user in the Certificate System
instance where the user will have privileges and assign the user to the appropriate group. An agent
or auditor must have a certificate stored in the subsystem's internal database. If the Console is
configured for SSL client authentication, all administrators must also a certificate.
To create a new user entry, do the following:
1. Log into the administrative console.
pkiconsole https://server.example.com:9443/ca
2. In the
Configuration
tab, select
Users and Groups
. Click
Add
.
3. Fill in the information in the
Edit User Information
dialog.
Содержание CERTIFICATE SYSTEM 7.2 - MIGRATION GUIDE
Страница 36: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Страница 144: ...124 ...
Страница 160: ...140 ...
Страница 208: ...188 ...
Страница 210: ...190 ...
Страница 256: ...236 ...
Страница 282: ...Chapter 12 Certificate Profiles 262 Parameter IssuerName_n IssuerType_n ...
Страница 285: ...Freshest CRL Extension Default 265 Parameter PointName_n PointIssuerName_n ...
Страница 335: ...Configuring Mappers 315 Figure 14 9 Selecting a New Mapper Type 6 Edit the mapper instance and click OK ...
Страница 362: ...342 ...
Страница 376: ...356 ...
Страница 436: ...416 ...
Страница 490: ...470 ...
Страница 504: ...484 ...