Chapter 17. User and Group Authorization
1. Log into the administrative console for the subsystem to which the trusted manager is being
added.
pkiconsole https://host:SSLport/subsystemType
2. In the Configuration tab, select Users and Groups. Click Add.
3. Fill in the identifying information.
The information is to help keep track of the trusted manager entry; the subsystem never uses it.
The subsystem relies solely on the trusted manager's SSL client certificate for authentication.
Figure 17.2. Creating the Trusted Manager Account
The full name must be the fully qualified host name of the Certificate Manager. The group must be
set to Trusted Managers do that the CA has trusted manager privileges.
4. Store the Certificate Manager's SSL client certificate in the internal database of the subsystem.
a. In the Users tab, select the trusted manager entry, and click Certificates.
b. Click Import.
396
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.3 - ADMINISTRATION and is the answer not in the manual?
Questions and answers