TPS Configuration Parameters
201
Parameter
Description
• 0 - No logging.
• 4 - LL_PER_SERVER. Messages that happen
only during startup or shutdown.
• 6 - LL_PER_CONNECTION. Messages that
happen per connection.
• 8 - LL_PER_PDU. Messages that happen for
every transaction.
• 9 - LL_ALL_DATA_IN_PDU. Dumps all data in
the PDU.
• 10 - All logging.
failover.pod.enable
Specifies whether to use a pod-type failover
mechanism. The valid values are
true|
false
. If there are two CA connections, two
TKS connections, and two DRM connections
configured from the TPS, when pod-type failover
is enabled, if the TPS fails to connect to the first
CA, for the next enrollment it will use the second
pod, meaning it will connect to the second CA,
DRM, and TKS host and port.
Table 8.1. Logging
Parameter
Description
conn.ca
n
.hostport
The Certificate Authority hostname and port
number. The format is
hostname:port
. This
should be the CA's end-entity SSL port.
conn.ca
n
.clientNickname
The client certificate nickname. This certificate
is used by the TPS when connecting to the CA.
This client certificate should be trusted by the
CA, and the client should be a configured CA
agent.
conn.ca
n
.servlet.enrollment
The servlet that performs profile-based certificate
enrollment. The value must be
/ca/ee/ca/
profileSubmitSSLClient
.
conn.ca1.servlet.revoke
The servlet that performs certificate revocation;
for example,
/ca/subsystem/ca/doRevoke
.
conn.ca1.servlet.unrevoke
The servlet that unrevokes a certificate; for
example,
/ca/subsystem/ca/doUnrevoke
.
conn.ca
n
.retryConnect
The number of times the TPS tries to reconnect
to the CA if the connection fails. The valid values
are integers. For example,
3
.
conn.ca
n
.timeout
The number of seconds before the TPS times out
after failing to connect to the CA. For example,
30
.
Содержание CERTIFICATE SYSTEM 7.3 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 7 3 Administration Guide Publication date May 2007 updated March 25 2010 ...
Страница 15: ...xv Index 525 ...
Страница 16: ...xvi ...
Страница 38: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Страница 82: ...Chapter 2 Installation and Configuration 60 rpm ev rhpki manage ...
Страница 154: ...132 ...
Страница 194: ...172 ...
Страница 238: ...216 ...
Страница 244: ...222 ...
Страница 246: ...224 ...
Страница 286: ...264 ...
Страница 292: ...270 ...
Страница 318: ...Chapter 13 Certificate Profiles 296 Parameter IssuerType_n IssuerName_n ...
Страница 321: ...Freshest CRL Extension Default 299 Parameter PointName_n PointIssuerName_n ...
Страница 371: ...Configuring Mappers 349 Figure 15 9 Selecting a New Mapper Type 6 Edit the mapper instance and click OK ...
Страница 398: ...376 ...
Страница 412: ...390 ...
Страница 472: ...450 ...
Страница 500: ...Appendix A Certificate and CRL Extensions 478 Parameter namen Table A 8 IssuerAlternativeName Configuration Parameters ...
Страница 506: ...484 ...
Страница 528: ...506 ...
Страница 546: ...524 ...