Configuring Mappers - Red Hat CERTIFICATE SYSTEM 7.3 - ADMINISTRATION Administration Manual

Hide thumbs Also See for CERTIFICATE SYSTEM 7.3 - ADMINISTRATION:
Table of Contents

Advertisement

Chapter 15. Publishing
Publisher
LdapDeltaCrlPublisher
LdapUserCertPublisher
LdapCrossCertPairPublisher
Table 15.1. LDAP Publishers
The publishers are enabled and configured using the X.500 standard attributes for storing certificates
and CRLs. The preconfigured publishers do not need modified.

15.4. Configuring Mappers

Mappers are only used with LDAP publishing. Mappers define a relationship between a certificate's
subject name and the DN of the directory entry to which the certificate is published. The Certificate
Manager needs to derive the DN of the entry from the certificate or the certificate request so it can
determine which entry to use. The mapper defines the relationship between the DN for the user entry
and the subject name of the certificate or other input information. This relationship can derive the exact
DN of the entry or set a search for the directory to find the DN of the entry.
During installation, the Certificate Manager automatically creates a set of mappers defining the most
common relationships. The default mappers are listed in
Mapper
LdapUserCertMap
LdapCrlMap
LdapCaCertMap
Table 15.2. Default Mappers
To use the default mappers, configure each of the macros by specifying the DN pattern and whether to
create the CA entry in the directory.
To use other mappers, create and configure an instance of the mapper. For more information see
Section 15.13.2, "Mapper Plug-in Modules
Modify a mapper by doing the following:
1. Log into the Certificate Manager Console.
pkiconsole https://server.example.com:9443/ca
2. In the Configuration tab, select Certificate Manager from the navigation tree on the left. Select
Publishing, and then Mappers.
The Mappers Management tab, which lists configured mappers, opens on the right.
346
Description
Used to publish Delta CRLs to the LDAP
directory.
Used to publish all types of end-entity certificates
to the LDAP directory.
Used to publish cross-signed certificates to the
LDAP directory.
Table 15.2, "Default
Description
Locates the correct attribute of user entries in the
directory in order to publish user certificates.
Locates the correct attribute of the CA's entry in
the directory in order to publish the CRL.
Locates the correct attribute of the CA's entry
in the directory in order to publish the CA
certificate.
".
Mappers".

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the CERTIFICATE SYSTEM 7.3 - ADMINISTRATION and is the answer not in the manual?

Questions and answers

Table of Contents