Managing Certificates
467
Figure B.10. A Certificate Chain That cannot Be Verified
B.5. Managing Certificates
The standards and services that facilitate using public-key cryptography and X.509 v3 certificates in
a network environment is called the
public-key infrastructure
(PKI). The sections that follow introduce
some specific certificate management issues involved in managing the PKI.
•
Section B.5.1, “Issuing Certificates”
•
Section B.5.2, “Certificates and the LDAP Directory”
•
Section B.5.3, “Key Management”
•
Section B.5.4, “Revoking Certificates”
B.5.1. Issuing Certificates
The process for issuing a certificate depends on the CA that issues it and the purpose for which it will
be used. Issuing nondigital forms of identification varies in similar ways. The requirements to get a
library card are different than the ones to get a driver's license. Similarly, different CAs have different
Содержание CERTIFICATE SYSTEM 7.2 - MIGRATION GUIDE
Страница 36: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Страница 144: ...124 ...
Страница 160: ...140 ...
Страница 208: ...188 ...
Страница 210: ...190 ...
Страница 256: ...236 ...
Страница 282: ...Chapter 12 Certificate Profiles 262 Parameter IssuerName_n IssuerType_n ...
Страница 285: ...Freshest CRL Extension Default 265 Parameter PointName_n PointIssuerName_n ...
Страница 335: ...Configuring Mappers 315 Figure 14 9 Selecting a New Mapper Type 6 Edit the mapper instance and click OK ...
Страница 362: ...342 ...
Страница 376: ...356 ...
Страница 436: ...416 ...
Страница 490: ...470 ...
Страница 504: ...484 ...