Certificate Profile Input And Output Reference; Input Reference; Certificate Request Input; Cmc Certificate Request Input - Red Hat CERTIFICATE SYSTEM 8.0 - ADMINISTRATION Admin Manual

Hide thumbs Also See for CERTIFICATE SYSTEM 8.0 - ADMINISTRATION:
Table of Contents

Advertisement

Appendix A. Certificate Profile Input
and Output Reference
This appendix explains both the standard certificate extensions defined by X.509 v3 and the
extensions defined by Netscape that were used in versions of products released before X.509 v3
was finalized. It provides recommendations for extensions to use with specific kinds of certificates,
including PKIX Part 1 recommendations.
Section A.1, "Input Reference"
Section A.2, "Output Reference"
A.1. Input Reference
An input puts certain fields on the enrollment page associated with a particular certificate profile.
The inputs set for a certificate profile are used to generate the enrollment page dynamically with the
appropriate fields; these input fields collect necessary information for the profile to generate the final
certificate.
A.1.1. Certificate Request Input
The Certificate Request input is used for enrollments in which a certificate request is pasted into the
enrollment form. It allows the request format to be set from a drop-down list and provides an input field
to paste the request.
This input puts the following fields in the enrollment form:
• Certificate Request Type. This drop-down menu lets the user specify the certificate request type.
The choices are PKCS #10 or CRMF. Certificate Management Messages over Cryptographic
Message Syntax (CMC) enrollment is supported with both PKCS #10 and CRMF.
• Certificate Request. This is the text area in which to paste the request.
A.1.2. CMC Certificate Request Input
The CMC Certificate Request input is used for enrollments using a Certificate Message over CMS
(CMC) certificate request is submitted in the request form. The request type must be either PKCS #10
or CRMF, and the only field is the Certificate Request text area in which to paste the request.
A.1.3. Dual Key Generation Input
The Dual Key Generation input is for enrollments in which dual key pairs will be generated, and thus
two certificates issued, one for signing and one for encryption.
This input puts the following fields into the enrollment form:
• Key Generation Request Type. This field is a read-only field displaying crmf as the request type.
• Key Generation Request. This field sets the selection for the key size in the key generation request
for both encryption and signing certificates.
419

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the CERTIFICATE SYSTEM 8.0 - ADMINISTRATION and is the answer not in the manual?

Questions and answers

Table of Contents