If the subsystem being configured is a clone of another subsystem, then the backup files for the
master subsystem must be locally accessible.
2.3.2. Default Settings
The ports and file directories in
the default installation and configuration information.
Susbsystem
CA
DRM
OCSP
TKS
TPS
Table 2.1. Default Subsystem Instance Ports and File Locations
The following certificates are created by default when any of the following subsystem instances are
installed:
• Certificate Manager
• CA signing certificate
• OCSP signing certificate (for the CA's internal OCSP service)
• SSL server certificate
• Subsystem certificate
The subsystem certificate is always issued by the security domain so that domain-level operations
that require client authentication are based on this subsystem certificate.
• DRM
• Transport certificate
• Storage certificate
• SSL server certificate
• Subsystem certificate
• OCSP
• OCSP signing certificate
• SSL server certificate
• Subsystem certificate
• TKS
• SSL server certificate
Table 2.1, "Default Subsystem Instance Ports and File Locations"
SSL Port
9443
10443
11443
13443
7889
Non-SSL Port
9080
10080
11080
13080
7888
Default Settings
show
Instance Directory
/var/lib/rhpki-ca
/var/lib/rhpki-kra
/var/lib/rhpki-ocsp
/var/lib/rhpki-tks
/var/lib/rhpki-tps
33
Need help?
Do you have a question about the CERTIFICATE SYSTEM 7.3 - ADMINISTRATION and is the answer not in the manual?
Questions and answers