Default DRM Instance Information
275
The subsystem certificate is always issued by the security domain so that domain-level operations that require client
authentication are based on this subsystem certificate.
Table 12.2. Default RA Instance Information
12.1.3. Default DRM Instance Information
The default DRM configuration is listed in
Table 12.3, “Default KRA Instance Information”
. Most of
these values are unique to the default instance; the default certificates and some other settings are
true for every DRM instance.
Setting
Value
Standard Port
1
10180
Secure End Users Port
1
10444
Agents Port
1
10443
Admin Port
1
10445
Tomcat Port
1
10701
Instance Name
pki-kra
Main Directory
/var/lib/pki-kra
Configuration Directory
/etc/pki-kra
Configuration File
/etc/pki-kra/CS.cfg
/etc/pki-kra/password.conf
Subsystem Certificates
Transport certificate
Storage certificate
SSL server certificate
Audit log signing certificate
Subsystem certificate
2
Security Databases
/var/lib/pki-kra/alias
Log Files
/var/log/pki-kra
Install Logs
/var/log/pki-kra-install.log
Process File
/var/run/pki-kra.pid
Web Services Files
/var/lib/pki-kra/webapps/kra
Running
service
instance_name
status
lists all of the configured ports and URLs (interfaces) for the subsystem instance.
The subsystem certificate is always issued by the security domain so that domain-level operations that require client
authentication are based on this subsystem certificate.
Table 12.3. Default KRA Instance Information
12.1.4. Default OCSP Instance Information
The default OCSP configuration is listed in
Table 12.4, “Default OCSP Instance Information”
. Most of
these values are unique to the default instance; the default certificates and some other settings are
true for every OCSP instance.
Setting
Value
Standard Port
1
11180
Secure End Users Port
1
11444
Содержание CERTIFICATE SYSTEM 8.0 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 8 0 Admin Guide Publication date July 22 2009 updated on March 25 2010 ...
Страница 42: ...20 ...
Страница 43: ...Part I Setting up Certificate Services ...
Страница 44: ......
Страница 190: ...168 ...
Страница 208: ...186 ...
Страница 223: ...Part II Additional Configuration to Manage CA Services ...
Страница 224: ......
Страница 256: ...234 ...
Страница 270: ...248 ...
Страница 280: ...258 ...
Страница 292: ...270 ...
Страница 293: ...Part III Managing the Subsystem Instances ...
Страница 294: ......
Страница 363: ...Managing RA Users 341 5 The user details page shows the person s UID full name email address and user SSL certificate ...
Страница 408: ...386 ...
Страница 438: ...416 ...
Страница 439: ...Part IV References ...
Страница 440: ......
Страница 503: ...Netscape Defined Certificate Extensions Reference 481 OID 2 16 840 1 113730 13 ...
Страница 504: ...482 ...
Страница 556: ...534 ...
Страница 564: ...542 ...