Red Hat CERTIFICATE SYSTEM 8 Install Manual page 42

Hide thumbs Also See for CERTIFICATE SYSTEM 8:
Table of Contents

Advertisement

Chapter 3. Installation and Configuration
• LunaSA: /usr/lunasa/lib/libCryptoki2.so
• nCipher: /opt/nfast/toolkits/pkcs11/libcknfast.so
8. Set the key size and the hashing algorithm to use. By default, the settings for the signing key are
applied to the keys for every certificate for the CA. To set different key types, sizes, or hashing
algorithms for each certificate, click the [Advanced] link to expand the form so each key pair is
listed.
The default RSA key size is 2048 and for ECC, 256.
NOTE
An ECC CA signing certificate can be used to sign both ECC and RSA certificates.
If you do not want to use the ECC client certificate that is generated at installation,
simply replace the client certificate after configuration, and keep the ECC CA signing
certificate.
An ECC module must be loaded for ECC certificates to be generated. Adding ECC support is
Section 4.2, "Installing a CA with ECC
covered in
must be loaded before beginning to configure the CA.
32
Enabled". Any ECC-enabled PKCS#11 module

Advertisement

Table of Contents
loading

This manual is also suitable for:

System 8 - install guide 25-03-2010

Table of Contents