Creating and Managing Users for a TPS
349
14.5. Creating and Managing Users for a TPS
There are three defined
roles
for TPS users, which function as groups for the TPS:
•
Agents
, who perform actual token management operations, such setting the token status and
changing token policies
•
Administrators
, who manage users for the TPS subsystem and have limited control over tokens
•
Operators
, who have no management control but are able to view and list tokens, certificates, and
activities performed through the TPS
Additional groups cannot be added for the TPS.
All of the TPS subsystem users are authenticated against an LDAP directory database that contains
their certificate (because accessing the TPS's web services requires certificate-based authentication),
and the authentication process checks the TPS group entries —
ou=TUS Agents
,
ou=TUS
Administrators
, and
ou=TUS Operators
— to see to which roles the user belongs, using
Apache's
mod_tokendb
module.
Users for the TPS are added and managed through the web services pages for the TPS. Users can be
easily added to any or all TPS roles.
14.5.1. Searching for Users
1. Open the TPS services page.
https://server.example.com:7889/tus/
2. Click the
Administrator Operations
tab.
3. Click the
Search Users
link.
4. Fill in the search parameters; to list all users, do not fill in any criteria.
Содержание CERTIFICATE SYSTEM 8.0 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 8 0 Admin Guide Publication date July 22 2009 updated on March 25 2010 ...
Страница 42: ...20 ...
Страница 43: ...Part I Setting up Certificate Services ...
Страница 44: ......
Страница 190: ...168 ...
Страница 208: ...186 ...
Страница 223: ...Part II Additional Configuration to Manage CA Services ...
Страница 224: ......
Страница 256: ...234 ...
Страница 270: ...248 ...
Страница 280: ...258 ...
Страница 292: ...270 ...
Страница 293: ...Part III Managing the Subsystem Instances ...
Страница 294: ......
Страница 363: ...Managing RA Users 341 5 The user details page shows the person s UID full name email address and user SSL certificate ...
Страница 408: ...386 ...
Страница 438: ...416 ...
Страница 439: ...Part IV References ...
Страница 440: ......
Страница 503: ...Netscape Defined Certificate Extensions Reference 481 OID 2 16 840 1 113730 13 ...
Страница 504: ...482 ...
Страница 556: ...534 ...
Страница 564: ...542 ...