Setting Crl Extensions - Red Hat CERTIFICATE SYSTEM 7.2 - ADMINISTRATION Administration Manual

Hide thumbs Also See for CERTIFICATE SYSTEM 7.2 - ADMINISTRATION:
Table of Contents

Advertisement

7. Click Save.
8. Extensions are allowed for this issuing point and can be configured. See
CRL Extensions"
for details.

13.4.3. Setting CRL Extensions

NOTE
Extensions only need configured for an issuing point if the Allow extensions for CRLs v2
checkbox is selected for that issuing point.
When the issuing point is created, three extensions are automatically enabled: CRLReason,
InvalidityDate, and CRLNumber. Other extensions are available but are disabled by default.
These can be enabled and modified. For more information about the available CRL extensions, see
Section A.5, "Standard X.509 v3 CRL
To configure CRL extensions, do the following:
1. Open the CA Console.
pkiconsole https://hostname:SSLport/ca
2. In the navigation tree, select Certificate Manager, and then select CRL Issuing Points.
3. Select the issuing point name below the Issuing Points entry, and select the CRL Extension
entry below the issuing point.
The right pane shows the CRL Extensions Management tab, which lists configured extensions.
Extensions".
Setting CRL Extensions
Section 13.4.3, "Setting
299

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the CERTIFICATE SYSTEM 7.2 - ADMINISTRATION and is the answer not in the manual?

Questions and answers

Table of Contents