Red Hat CERTIFICATE SYSTEM 8 Install Manual page 82

Hide thumbs Also See for CERTIFICATE SYSTEM 8:
Table of Contents

Advertisement

Chapter 4. Additional Installation Options
e. Click OK.
3. Add the new RA authentication instance to the CA:
a. Open the CA configuration directory, and edit the CS.cfg file
cd /etc/pki-ca
vi CS.cfg
b. Search for the string raCertAuth.
c. Copy those lines for the first RA instance, paste them, and edit them for the second RA
instance's information. For example:
auths.instance.raCertAuth.agentGroup=Registration Manager Agents
auths.instance.raCertAuth.plug-inName=AgentCertAuth
auths.instance.ra2CertAuth.agentGroup=Registration Manager2 Agents
auths.instance.ra2CertAuth.plug-inName=AgentCertAuth
4. Add the new RA user enrollment profile to the Certificate Manager's certificate profiles list to utilize
the new RA authentication instance.
a. Open the CA profiles directory.
cd /var/lib/pki-ca/profiles/ca
b. Copy the current RA profile to create the new profile. For example:
cp caDualRAuserCert.cfg caDualRA2userCert.cfg
c. Edit the new file to contain the second RA instance's information. Change raCertAuth to
ra2CertAuth.
5. Open the CA configuration directory, and edit the CS.cfg file.
cd /var/lib/pki-ca/conf
vi CS.cfg
a. Add caDualRA2userCert to the profiles list. For example:
profile.list=...[snip]...caRAserverCert,caRA2userCert
Make sure to use a comma to separate the entries.
b. Search for the lines for the caDualRAuserCert profile configuration, copy them, and edit
them for the second RA instance's information.
profile.caDualRAuserCert.class_id=caEnrollImpl
profile.caDualRAuserCert.config=/var/lib/pki-ca/profiles/ca/caDualRAuserCert.cfg
profile.caDualRA2userCert.class_id=caEnrollImpl
72

Advertisement

Table of Contents
loading

This manual is also suitable for:

System 8 - install guide 25-03-2010

Table of Contents