Index
538
jobs
built-in modules
unpublishExpiredCerts, 260
compared to plug-in implementation, 259
configuring job notification messages, 254, 259
setting frequency, 260
specifying schedule for, 267
turning on scheduler, 260
K
key archival, 69
how keys are stored, 70
how to set up, 71
reasons to archive, 69
where keys are stored, 69
key generation
configuring for tokens, 161
key recovery, 70
how to set up, 72
keyUsage, 463
L
LDAP publishing
defined, 206
manual updates, 232
when to do, 232
who can do this, 232
location of
active log files, 359
log modules
deleting, 385
registering new ones, 384
logging
buffered vs. unbuffered, 361
log files
archiving rotated files, 362
default location, 359
signing rotated files, 382
timing of rotation, 362
log levels, 360, 360
default selection, 361
how they relate to message categories, 360
significance of choosing the right level, 361
what it means, 360
managing from Certificate System console,
382
services that are logged, 359
types of logs, 359
Audit, 363
Error, 366
M
mail server used for notifications, 257
managing
certificate database, 407
mapper modules
deleting, 233
registering new ones, 233
mappers
created during installation, 214, 486, 488
mappers that use
CA certificate, 486
DN components, 488
modifying
privileged user's group membership, 331
N
Name extension modules
Issuer Alternative Name, 433
nameConstraints, 464
naming convention
for internal database instances, 317
netscape-cert-type, 480
nickname
for CA signing certificate, 388
for OCSP signing certificate, 388
for signing certificate, 390
for SSL server certificate, 389, 390
for subsystem certificate, 388, 390, 392
for TLS signing certificate, 388
notifications
configuring the mail server
hostname, 257
port, 257
to agents about unpublishing certificates, 260
nss.conf
revocation checking for TPS and RA, 192
O
OCSP
prompting for subsystem passwords
existing instance, 289
new instance, 288
OCSP publisher, 485
OCSP signing certificate, 5, 388
nickname, 388
requesting, 394
Online Certificate Status Manager
administrators
creating, 332
agents
creating, 332
Содержание CERTIFICATE SYSTEM 8.0 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 8 0 Admin Guide Publication date July 22 2009 updated on March 25 2010 ...
Страница 42: ...20 ...
Страница 43: ...Part I Setting up Certificate Services ...
Страница 44: ......
Страница 190: ...168 ...
Страница 208: ...186 ...
Страница 223: ...Part II Additional Configuration to Manage CA Services ...
Страница 224: ......
Страница 256: ...234 ...
Страница 270: ...248 ...
Страница 280: ...258 ...
Страница 292: ...270 ...
Страница 293: ...Part III Managing the Subsystem Instances ...
Страница 294: ......
Страница 363: ...Managing RA Users 341 5 The user details page shows the person s UID full name email address and user SSL certificate ...
Страница 408: ...386 ...
Страница 438: ...416 ...
Страница 439: ...Part IV References ...
Страница 440: ......
Страница 503: ...Netscape Defined Certificate Extensions Reference 481 OID 2 16 840 1 113730 13 ...
Страница 504: ...482 ...
Страница 556: ...534 ...
Страница 564: ...542 ...