Chapter 2. Installation and Configuration
32
Packages for Java
™
SUNWj5rtx (64-bit JRE)
2.3. Configuration Preparation
•
Section 2.3.1, “Required Information”
•
Section 2.3.2, “Default Settings”
2.3.1. Required Information
When the Certificate System subsystems are configured, some outside information must be available.
This includes the following:
• Login PIN.
There is a randomly-generated PIN in the
preop.pin
parameter in the
CS.cfg
file in the instance
conf/
directory. This is used to log into the configuration wizard.
• Security domain information.
CAs can create a new security domain, which requires a unique name and a username and
password for the CA agent who administers the domain.
All other subsystems must join an existing security name. Have the username and password of the
CA agent who administers the domain.
• CA information.
If the subsystem is not a CA, then it is necessary to select a CA from a drop-down menu or add
an external CA. If a Certificate System CA is selected, then supply the CA agent username and
password.
• Subsystem information.
When installing a TPS, the CA and TKS subsystems must be installed and configured before
installing the TPS; a DRM subsystem must also be installed and configured if server-side key
generation is selected. When configuring the TPS, the TKS and DRM to connect with the TPS are
selected from a drop-down list of all subsystems within the security domain. The bind information for
the selected subsystems must be available.
• Directory Server hostname and port number.
The Certificate System uses the user database of the Directory Server to store its information,
and the hostname and port number of the LDAP directory is required for the Certificate System to
access the database.
• Directory Manager DN and password.
The Certificate System must be able to bind to the user database, so a user ID and password must
be supplied to bind to the Directory Server. This user is normally the Directory Manager. The default
Directory Manager DN is
cn=Directory Manager
.
• Certificate and key recovery files.
Содержание CERTIFICATE SYSTEM 7.3 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 7 3 Administration Guide Publication date May 2007 updated March 25 2010 ...
Страница 15: ...xv Index 525 ...
Страница 16: ...xvi ...
Страница 38: ...Chapter 1 Overview 16 Figure 1 4 Certificate System Architecture ...
Страница 82: ...Chapter 2 Installation and Configuration 60 rpm ev rhpki manage ...
Страница 154: ...132 ...
Страница 194: ...172 ...
Страница 238: ...216 ...
Страница 244: ...222 ...
Страница 246: ...224 ...
Страница 286: ...264 ...
Страница 292: ...270 ...
Страница 318: ...Chapter 13 Certificate Profiles 296 Parameter IssuerType_n IssuerName_n ...
Страница 321: ...Freshest CRL Extension Default 299 Parameter PointName_n PointIssuerName_n ...
Страница 371: ...Configuring Mappers 349 Figure 15 9 Selecting a New Mapper Type 6 Edit the mapper instance and click OK ...
Страница 398: ...376 ...
Страница 412: ...390 ...
Страница 472: ...450 ...
Страница 500: ...Appendix A Certificate and CRL Extensions 478 Parameter namen Table A 8 IssuerAlternativeName Configuration Parameters ...
Страница 506: ...484 ...
Страница 528: ...506 ...
Страница 546: ...524 ...