Netscape MANAGEMENT SYSTEM 4.5 - PLUG-IN Manual page 100

Table of Contents

Advertisement

KeyAlgorithmConstraints Plug-in Module
Figure 3-5
The configuration shown in Figure 3-5 creates a policy rule named
KeyAlgForClientServerCert
the key algorithm of all client and server certificates to RSA.
Table 3-5 gives details about each of the parameters.
Table 3-5
Description of parameters defined in the KeyAlgorithmConstraints module
Parameter
Description
Specifies whether the rule is enabled or disabled. Check the box to enable the rule
enable
(default). Uncheck the box to disable the rule.
• If you enable the rule and set the remaining parameters correctly, the server sets
• If you disable the rule, the server sets the algorithm specified in the certificate
Specifies the predicate expression for this rule. If you want the rule to be applied to all
predicate
certificate requests, leave the field blank (default). To form a predicate expression, see
section "Using Predicates in Policy Rules" in Chapter 18, "Setting Up Policies" of
CMS Installation and Setup Guide.
Example: HTTP_PARAMS.certType==client AND
HTTP_PARAMS.certType==server
100
Netscape Certificate Management System Plug-ins Guide • October 2001
Parameters of the KeyAlgorithmConstraints module
the configured algorithm in certificates specified by the predicate parameter.
request.
, which enforces a rule that the server should restrict

Advertisement

Table of Contents
loading

This manual is also suitable for:

Netscape management system 4.5

Table of Contents