Creating Data Recovery Manager Agents and Administrators
181
the agents receive this key recovery authorization number, they can authorize this request by
going to the DRM agent services page and clicking the
Authorize Recovery
link.
e. Once all the agents have authorized the recovery, the next screen returns a link to download a
PKCS #12 blob containing the recovered key pair. Follow the link, and save the blob to file.
9. Restore the key to the browser's database. Import the
.p12
file into the browser and mail client.
10. Open the test email. The message should be shown again.
7.7. Creating Data Recovery Manager Agents and
Administrators
When the subsystem is configured, there is a default user created with both administrator and agent
privileges.This user can perform both administrator and agent operations and access the Console and
the agent services page.
To create an additional administrator, agent, or auditor, create a user in the Certificate System instance
where the user will have privileges and assign the user to the appropriate group. An agent or auditor
must have a certificate stored in the subsystem's internal database. If the Console is configured for
SSL client authentication, all administrators must also a certificate.
To create a new user entry, do the following:
1. Log into the administrative console.
pkiconsole https://server.example.com:10443/kra
2. In the
Configuration
tab, select
Users and Groups
. Click
Add
.
3. Fill in the information in the
Edit User Information
dialog.
Содержание CERTIFICATE SYSTEM 7.3 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 7 3 Administration Guide Publication date May 2007 updated March 25 2010 ...
Страница 15: ...xv Index 525 ...
Страница 16: ...xvi ...
Страница 38: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Страница 82: ...Chapter 2 Installation and Configuration 60 rpm ev rhpki manage ...
Страница 154: ...132 ...
Страница 194: ...172 ...
Страница 238: ...216 ...
Страница 244: ...222 ...
Страница 246: ...224 ...
Страница 286: ...264 ...
Страница 292: ...270 ...
Страница 318: ...Chapter 13 Certificate Profiles 296 Parameter IssuerType_n IssuerName_n ...
Страница 321: ...Freshest CRL Extension Default 299 Parameter PointName_n PointIssuerName_n ...
Страница 371: ...Configuring Mappers 349 Figure 15 9 Selecting a New Mapper Type 6 Edit the mapper instance and click OK ...
Страница 398: ...376 ...
Страница 412: ...390 ...
Страница 472: ...450 ...
Страница 500: ...Appendix A Certificate and CRL Extensions 478 Parameter namen Table A 8 IssuerAlternativeName Configuration Parameters ...
Страница 506: ...484 ...
Страница 528: ...506 ...
Страница 546: ...524 ...