Authority Key Identifier Extension Default
259
Parameter
Description
Location_
n
Specifies the address or location to get additional information
about the CA that has issued the certificate.
• For
directoryName
, the value must be a string form of
X.500 name, similar to the subject name in a certificate.
For example,
cn=SubCA, ou=Research Dept, o=Example
Corporation, c=US
.
• For
dNSName
, the value must be a valid fully-qualified
domain name. For example,
testCA.example.com
.
• For
EDIPartyName
, the value must be an IA5String. For
example,
Example Corporation
.
• For
iPAddress
, the value must be a valid IP address.
An IPv4 address must be in the format
n.n.n.n
or
n.n.n.n,m.m.m.m
. For example,
128.21.39.40
or
128.21.39.40,255.255.255.00
. An IPv 6
address with netmask is separated by a comma.
For example,
0:0:0:0:0:0:13.1.68.3
,
FF01::43
,
0:0:0:0:0:0:13.1.68.3,FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:255.255.255.0
,
and
FF01::43,FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FF00:0000
.
• For
OID
, the value must be a unique, valid OID specified in
dot-separated numeric component notation. For example,
1.2.3.4.55.6.5.99
.
• For
RFC822Name
, the value must be a valid Internet mail
address.
• For
URIName
, the value must be a non-relative universal
resource identifier (URI) following the URL syntax
and encoding rules. The name must include both a
scheme, such as
http
, and a fully-qualified domain
name or IP address of the host. For example,
http://
ocspResponder.example.com:8000
.
Enable_
n
Specifies whether this location is enabled. Select
true
to
enable,
false
to disable.
Table 12.3. Authority Info Access Extension Default Configuration Parameters
12.7.2. Authority Key Identifier Extension Default
This default attaches the Authority Key Identifier extension to the certificate. The extension identifies
the public key that corresponds to the private key used by a CA to sign certificates. This default has no
parameters. If used, this extension is included in the certificate with the public key information.
This default takes the following constraint:
• No Constraints; see
Section 12.8.6, “No Constraint”
.
For general information about this extension, see
Section A.3.2, “The authorityKeyIdentifier”
.
Содержание CERTIFICATE SYSTEM 7.2 - MIGRATION GUIDE
Страница 36: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Страница 144: ...124 ...
Страница 160: ...140 ...
Страница 208: ...188 ...
Страница 210: ...190 ...
Страница 256: ...236 ...
Страница 282: ...Chapter 12 Certificate Profiles 262 Parameter IssuerName_n IssuerType_n ...
Страница 285: ...Freshest CRL Extension Default 265 Parameter PointName_n PointIssuerName_n ...
Страница 335: ...Configuring Mappers 315 Figure 14 9 Selecting a New Mapper Type 6 Edit the mapper instance and click OK ...
Страница 362: ...342 ...
Страница 376: ...356 ...
Страница 436: ...416 ...
Страница 490: ...470 ...
Страница 504: ...484 ...