Chapter 10.
249
Using Automated Notifications
The Certificate System can be configured to send automatic email notifications to end users when
certificates are issued or revoked or to an agent when a new request has arrived in the agent request
queue. This chapter describes automated notifications and details how to enable, configure, and
customize the notification email messages that are sent.
NOTE
Because of the types of notifications that can be sent, only Certificate Managers have
the ability to be configured for notifications; this option is not available on the other
subsystems.
10.1. About Automated Notifications for the CA
Automated notifications are email messages sent when a specified event occurs. The system uses
listeners that monitor the system to determine when a particular event has occurred; when the event
happens, then the system is triggered to send an email to the configured recipient. Each type of
notification uses a template, either in plain text or HTML, to construct the notification message. The
template contains text and tokens that are expanded to fill in the correct information for a particular
event. The messages can be customized by changing the text and tokens contained in the templates.
The HTML templates can also be customized for different appearances and formatting.
10.1.1. Types of Automated Notifications
There are three types of automated notifications:
•
Certificate Issued
.
A notification message is automatically sent to users who have been issued certificates. A rejection
message is sent to a user if the user's certificate request is rejected.
•
Certificate Revocation
.
A notification message is automatically sent to users when the user certificate is revoked.
•
Request in Queue
.
A notification message is automatically sent to one or more agents when a request enters the agent
request queue, using the email addresses set for the agent. This notification type sends an email
every time a message enters the queue. For more information about the request in queue job, see
Section 11.1.2.2, “requestInQueueNotifier”
.
There is also a job that sends a notification to agents about the status of the queue, which includes
a summary of the queue status at certain intervals.
10.1.2. Determining End-Entity Email Addresses
The notification system determines the email address of an end entity by checking first the certificate
request or revocation request, then the subject name of the certificate, and last the Subject Alternative
Name extension of the certificate, if the certificate contains this extension. If an email address cannot
Содержание CERTIFICATE SYSTEM 8.0 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 8 0 Admin Guide Publication date July 22 2009 updated on March 25 2010 ...
Страница 42: ...20 ...
Страница 43: ...Part I Setting up Certificate Services ...
Страница 44: ......
Страница 190: ...168 ...
Страница 208: ...186 ...
Страница 223: ...Part II Additional Configuration to Manage CA Services ...
Страница 224: ......
Страница 256: ...234 ...
Страница 270: ...248 ...
Страница 280: ...258 ...
Страница 292: ...270 ...
Страница 293: ...Part III Managing the Subsystem Instances ...
Страница 294: ......
Страница 363: ...Managing RA Users 341 5 The user details page shows the person s UID full name email address and user SSL certificate ...
Страница 408: ...386 ...
Страница 438: ...416 ...
Страница 439: ...Part IV References ...
Страница 440: ......
Страница 503: ...Netscape Defined Certificate Extensions Reference 481 OID 2 16 840 1 113730 13 ...
Страница 504: ...482 ...
Страница 556: ...534 ...
Страница 564: ...542 ...