Red Hat CERTIFICATE SYSTEM 7.3 - ADMINISTRATION Administration Manual page 388

Hide thumbs Also See for CERTIFICATE SYSTEM 7.3 - ADMINISTRATION:
Table of Contents

Advertisement

Chapter 15. Publishing
15.13.1.5. LdapDeltaCrlPublisher
The LdapDeltaCrlPublisher plug-in module configures a Certificate Manager to publish or
unpublish a delta CRL to the deltaRevocationList;binary attribute of a directory entry.
During installation, the Certificate Manager automatically creates an instance of the
LdapDeltaCrlPublisher module for publishing CRLs to the directory.
Parameter
crlAttr
Table 15.8. LdapDeltaCrlPublisher Configuration Parameters
15.13.1.6. LdapCertificatePairPublisher
The LdapCertificatePairPublisher plug-in module configures a Certificate Manager to publish
or unpublish a cross-signed certificate to the crossCertPair;binary attribute of the CA's directory
entry.
The module also converts the object class of the CA's entry to a certificationAuthority, if it
is not used already. Similarly, it also removes the certificationAuthority object class when
unpublishing if the CA has no other certificates.
During installation, the Certificate Manager automatically creates an instance of the
LdapCertificatePairPublisher module named LdapCrossCertPairPublisher for
publishing the cross-signed certificates to the directory.
Parameter
crossCertPairAttr
caObjectClass
Table 15.9. LdapCertificatePairPublisher Parameters
15.13.1.7. OCSPPublisher
The OCSPPublisher plug-in module configures a Certificate Manager to publish its CRLs to an
Online Certificate Status Manager.
The Certificate Manager does not create any instances of the OCSPPublisher module at installation.
Parameter
host
port
366
Description
Specifies the directory attribute of the mapped
entry to which the Certificate Manager
should publish the delta CRL. This must be
deltaRevocationList;binary.
Description
Specifies the LDAP directory attribute to
publish the CA certificate. This must be
crossCertificatePair;binary.
Specifies the object class for the CA's
entry in the directory. This must be
certificationAuthority.
Description
Specifies the fully qualified hostname of the
Online Certificate Status Manager.
Specifies the port number on which the Online
Certificate Status Manager is listening to the
Certificate Manager. This is the Online Certificate
Status Manager's SSL port number.

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the CERTIFICATE SYSTEM 7.3 - ADMINISTRATION and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

Table of Contents