Installing a Standalone Data Recovery Manager
Subject Name for Data Recovery Manager Transport Certificate. Type the values
10.
for the subject DN components; these values identify the transport certificate.
Click Next to continue.
Certificate Extensions for Data Recovery Manager Transport Certificate. Select
11.
the required extensions. The default settings should work for most deployments. If
necessary, you can add an additional extension by pasting its base-64 encoding in the
space provided on this screen.
CS provides command-line tools for generating extensions to include in CA and other
certificate requests. For details about these tools, check this directory:
<server_root>/bin/cert/tools
Note that the certificate extension text field accepts a single extension blob. If you want
to add multiple extensions, you should use the
provided in the
Chapter 5, "Extension Joiner Tool" of CS Command-Line Tools Guide.
Click Next to continue.
Data Recovery Manager Transport Certificate Request Creation. This
12.
informational screen tells you that the wizard has all the information required to
generate the key pair and certificate request. In the previous screen, if you chose to
include the Subject Key Identifier extension in the certificate, you'll be given the
choice to select the format for the certificate request. Otherwise, the request format will
be PKCS #10.
❍
❍
Click Next. The wizard generates the certificate request that you must submit to a CA,
which could be a remote Certificate Manager or a third-party CA.
Submission of Request. Specify whether you want to submit the request automatically
13.
or manually.
❍
208
Red Hat Certificate System Administrator's Guide • September 2005
directory. For details on using the
tools
If you want the wizard to generate the certificate request in PKCS #10 format,
select the "Generate PKCS10 request" option.
If you want the wizard to generate the certificate request in CMC format, select the
"Generate CMC full enrollment request" option.
To automatically submit the request to a remote Certificate Manager (or for
automatic enrollment), follow these steps:
Select the "Send the request to a remote CS now" option.
I.
Enter the host name and end-entity port number, and specify whether the
II.
end-entity port is SSL enabled.
Click Next to submit the request.
III.
program, which is also
ExtJoiner
ExtJoiner
program, see
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.1 - ADMINISTRATOR and is the answer not in the manual?