15.13.1.2. LdapCaCertPublisher
The LdapCaCertPublisher plug-in module configures a Certificate Manager to publish or unpublish
a CA certificate to the caCertificate;binary attribute of the CA's directory entry.
The module converts the object class of the CA's entry to a certificationAuthority, if it is
not used already. Similarly, it also removes the certificationAuthority object class when
unpublishing if the CA has no other certificates.
During installation, the Certificate Manager automatically creates an instance of the
LdapCaCertPublisher module for publishing the CA certificate to the directory.
Parameter
caCertAttr
caObjectClass
Table 15.5. LdapCaCertPublisher Configuration Parameters
15.13.1.3. LdapUserCertPublisher
The LdapUserCertPublisher plug-in module configures a Certificate Manager to publish or
unpublish a user certificate to the userCertificate;binary attribute of the user's directory entry.
This module is used to publish any end-entity certificate to an LDAP directory. Types of end-entity
certificates include SSL client, S/MIME, SSL server, and OCSP responder.
During installation, the Certificate Manager automatically creates an instance of the
LdapUserCertPublisher module for publishing end-entity certificates to the directory.
Parameter
certAttr
Table 15.6. LdapUserCertPublisher Configuration Parameters
15.13.1.4. LdapCrlPublisher
The LdapCrlPublisher plug-in module configures a Certificate Manager to publish or unpublish the
CRL to the certificateRevocationList;binary attribute of a directory entry.
During installation, the Certificate Manager automatically creates an instance of the
LdapCrlPublisher module for publishing CRLs to the directory.
Parameter
crlAttr
Table 15.7. LdapCrlPublisher Configuration Parameters
Description
Specifies the LDAP directory attribute to
publish the CA certificate. This must be
caCertificate;binary.
Specifies the object class for the CA's
entry in the directory. This must be
certificationAuthority.
Description
Specifies the directory attribute of the mapped
entry to which the Certificate Manager
should publish the certificate. This must be
userCertificate;binary.
Description
Specifies the directory attribute of the mapped
entry to which the Certificate Manager
should publish the CRL. This must be
certificateRevocationList;binary.
Publisher Plug-in Modules
365
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.3 - ADMINISTRATION and is the answer not in the manual?
Questions and answers