Chapter 2. Installation and Configuration
cloning an existing subsystem, select the master subsystem from the list provided, and give the name
of the new cloned subsystem. The list of subsystems in the Clone section list is retrieved from the
security domain provided in the Security Domain panel.
Figure 2.3. Creating the Instance
Cloning a subsystem automatically supplies the rest of the subsystem information based on the
master's configuration and regenerates the master's certificates.
2.4.3. PKI Hierarchy Panel
This option is only available to CAs; this creates the overall arrangement of CAs. CAs can be arranged
in a hierarchy, with root CAs, which sign CA signing certificates and set certificate policies, and layers
of subordinate CAs, which have CA signing certificates signed by a root CA and which must obey
the issuance policies set by that root. This panel determines where in the CA hierarchy the new CA
instance belongs.
Figure 2.4. Setting the PKI Hierarchy
36
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.2 - ADMINISTRATION and is the answer not in the manual?
Questions and answers