Netscape DIRECTORY SERVER 6.01 - ADMINISTRATOR Administrator's Manual page 385

Table of Contents

Advertisement

The following procedure describes how to use Netscape Communicator 4.7 to
perform these tasks.
To create a certificate, it is sufficient to start Netscape Communicator 4.7.
1.
If it does not already exist, the certificate database will be created.
Use Communicator to connect to your Certificate Authority.
2.
If you are using an internally deployed Netscape Certificate Management
System, you will go to a URL of the form:
hostname
https://
Some Certificate Authorities provide a link that allows you to download the
CA's certificate.
Trust the Certificate Authority.
3.
This task differs depending on the CA. In some cases, such as if you are
connecting to a Netscape Certificate Management System, Communicator will
automatically prompt you to see if you want to trust the CA.
These steps are sufficient to ensure that your client applications will accept
connections to take place with the Directory Server, because the clients recognize
that the Directory Server's certificate has been issued by a trusted CA.
However, if you also want the Directory Server to authenticate clients using the
clients' certificate, you must perform the following additional steps:
On the client system, obtain a client certificate from the CA.
4.
On your client system, install your client certificate.
5.
Regardless of how you receive your certificate (either in email or on a web
page), there should be a link that you click to install the certificate. Click it and
step through the dialog boxes that Communicator presents to you.
Make sure you record the certificate information that is sent to you in a file. In
particular, you must know the subject DN of the certificate because you must
configure the server to map it to an entry in the directory. Your client certificate
will be similar to:
-----BEGIN CERTIFICATE-----
MIICMjCCAZugAwIBAgICCEEwDQYJKoZIhvcNAQEFBQAwfDELMAkGA1UEBhMCVVMx
IzAhBgNVBAoTGlBhbG9va2FWaWxsZSBXaWRnZXRzLCBJbmMuMR0wGwYDVQQLExRX
aWRnZXQgTWFrZXJzICdSJyBVczEpMCcGA1UEAxMgVGVzdCBUZXN0IFRlc3QgVGVz
dCBUZXN0IFRlc3QgQ0EwHhcNOTgwMzEyMDIzMzU3WhcNOTgwMzI2MDIzMzU3WjBP
:444
Configuring LDAP Clients to Use SSL
Chapter 11
Managing SSL
385

Advertisement

Table of Contents
loading

This manual is also suitable for:

Directory server 6.01

Table of Contents