Figure 4-2
The configuration shown in Figure 4-2 creates a policy rule named
AuthInfoAccessExtForClientCert
add the authority information access extension to client certificates. The extension
indicates that the online validation service (or the OSCSP responder) for the CA
that has issued these certificates is at this URL:
http://ocspResponder.siroe.com:8000
The extension is marked noncritical (to comply with the PKIX recommendation).
Table 4-2 gives details about the configurable parameters defined in the
AuthInfoAccessExt
Table 4-2
Description of parameters defined in the AuthInfoAccessExt module
Parameter
Description
Specifies whether the rule is enabled or disabled. Check the box to enable the rule
enable
(default). Uncheck the box to disable the rule.
• If you enable the rule and set the remaining parameters correctly, the server adds
• If you disable the rule, the server does not add the extension to certificates; it
Parameters defined in the AuthInfoAccessExt module
module.
the authority information access extension to certificates specified by the
predicate parameter.
ignores the values in the remaining fields.
, which enforces a rule that the server should
Chapter 4
Certificate Extension Plug-in Modules
AuthInfoAccessExt Plug-in Module
137
Need help?
Do you have a question about the NETSCAPE MANAGEMENT SYSTEM 4.5 - PLUG-IN and is the answer not in the manual?
Questions and answers