Red Hat CERTIFICATE SYSTEM 8 Install Manual page 94

Hide thumbs Also See for CERTIFICATE SYSTEM 8:
Table of Contents

Advertisement

Chapter 6. Cloning Subsystems
NOTE
When cloning a CA, the master and clone instances have the same CA signing key.
10. The subsystem information is automatically supplied from the master instance to the clone
instance once the keys are successfully restored. Complete the configuration process.
NOTE
By default, the instance configuration wizard uses localhost as the location for the
internal LDAP database for a new instance. However, with cloning, the configuration
process will spin endlessly and never complete if localhost is used for the internal
database location, even if the LDAP database is indeed installed on the localhost.
Use the the fully-qualified domain name for the LDAP database in the Internal
Database panel when configuring a clone.
11. Edit the CS.cfg file for the clone. Certain parameters must be added to the clone configuration to
disable caching and generating CRLs.
• Disable control of the database maintenance thread:
ca.certStatusUpdateInterval=0
• Disable monitoring database replication changes:
ca.listenToCloneModifications=false
• Disable maintenance of the CRL cache:
ca.crl.IssuingPointId.enableCRLCache=false
• Disable CRL generation:
84

Advertisement

Table of Contents
loading

This manual is also suitable for:

System 8 - install guide 25-03-2010

Table of Contents