Authority Key Identifier Extension Default
293
Parameter
Description
Location_
n
Specifies the address or location to get additional information
about the CA that has issued the certificate.
• For
directoryName
, the value must be a string form of
X.500 name, similar to the subject name in a certificate.
For example,
cn=SubCA, ou=Research Dept, o=Example
Corporation, c=US
.
• For
dNSName
, the value must be a valid fully-qualified
domain name. For example,
testCA.example.com
.
• For
EDIPartyName
, the value must be an IA5String. For
example,
Example Corporation
.
• For
iPAddress
, the value must be a valid IP address.
An IPv4 address must be in the format
n.n.n.n
or
n.n.n.n,m.m.m.m
. For example,
128.21.39.40
or
128.21.39.40,255.255.255.00
. An IPv 6
address with netmask is separated by a comma.
For example,
0:0:0:0:0:0:13.1.68.3
,
FF01::43
,
0:0:0:0:0:0:13.1.68.3,FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:255.255.255.0
,
and
FF01::43,FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FF00:0000
.
• For
OID
, the value must be a unique, valid OID specified in
dot-separated numeric component notation. For example,
1.2.3.4.55.6.5.99
.
• For
RFC822Name
, the value must be a valid Internet mail
address.
• For
URIName
, the value must be a non-relative universal
resource identifier (URI) following the URL syntax
and encoding rules. The name must include both a
scheme, such as
http
, and a fully-qualified domain
name or IP address of the host. For example,
http://
ocspResponder.example.com:8000
.
Enable_
n
Specifies whether this location is enabled. Select
true
to
enable,
false
to disable.
Table 13.3. Authority Info Access Extension Default Configuration Parameters
13.7.2. Authority Key Identifier Extension Default
This default attaches the Authority Key Identifier extension to the certificate. The extension identifies
the public key that corresponds to the private key used by a CA to sign certificates. This default has no
parameters. If used, this extension is included in the certificate with the public key information.
This default takes the following constraint:
• No Constraints; see
Section 13.8.6, “No Constraint”
.
For general information about this extension, see
Section A.3.2, “The authorityKeyIdentifier”
.
Содержание CERTIFICATE SYSTEM 7.3 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 7 3 Administration Guide Publication date May 2007 updated March 25 2010 ...
Страница 15: ...xv Index 525 ...
Страница 16: ...xvi ...
Страница 38: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Страница 82: ...Chapter 2 Installation and Configuration 60 rpm ev rhpki manage ...
Страница 154: ...132 ...
Страница 194: ...172 ...
Страница 238: ...216 ...
Страница 244: ...222 ...
Страница 246: ...224 ...
Страница 286: ...264 ...
Страница 292: ...270 ...
Страница 318: ...Chapter 13 Certificate Profiles 296 Parameter IssuerType_n IssuerName_n ...
Страница 321: ...Freshest CRL Extension Default 299 Parameter PointName_n PointIssuerName_n ...
Страница 371: ...Configuring Mappers 349 Figure 15 9 Selecting a New Mapper Type 6 Edit the mapper instance and click OK ...
Страница 398: ...376 ...
Страница 412: ...390 ...
Страница 472: ...450 ...
Страница 500: ...Appendix A Certificate and CRL Extensions 478 Parameter namen Table A 8 IssuerAlternativeName Configuration Parameters ...
Страница 506: ...484 ...
Страница 528: ...506 ...
Страница 546: ...524 ...