Ldapcacertmap Mapper - Netscape MANAGEMENT SYSTEM 4.5 - PLUG-IN Manual

Table of Contents

Advertisement

LdapCaSimpleMap Plug-in Module
Description of parameters defined in the LdapCaSimpleMap module (Continued)
Table 5-2
Parameter
Description
Specifies the DN pattern the Certificate Manager should use to construct the DN in
dnPattern
order to search for the CA's entry in the publishing directory. The value of
dnPattern can be a list of AVAs separated by commas. An AVA can be a variable,
such as CN=$subj.cn, that the Certificate Manager can derive from the certificate
subject name, or a constant, such as O=Siroe Corporation.
Note that if your CA certificate does not have the CN component in its subject name,
be sure to adjust the CA certificate mapping DN pattern to reflect the DN of the entry
in the directory where the CA certificate is to be published. For example, if your CA
certificate subject DN is O=Siroe Corporation and the CA's entry in the
directory is cn=Certificate Authority, o=Siroe Corporation, the pattern
should look like this: cn=Certificate Authority, o=$subj.o
(This rule applies to other mappers as well.)
Permissible values: A valid pattern that will enable the Certificate Manager to
construct the DN for the CA's entry.
Example 1: uid=CertMgr, o=Siroe Corporation
Example 2: CN=$subj.cn,OU=$subj.ou,O=$subj.o,C=US
Example 3: uid=$req.HTTP_PARAMS.uid,
E=$ext.SubjectAlternativeName.RFC822Name,ou=$subj.ou
In the above examples, $req means take the attribute from the certificate request,
$subj means take the attribute from the certificate subject name, and $ext means
take the attribute from the certificate extension.

LdapCaCertMap Mapper

The mapper named
module. The Certificate Manager automatically creates this mapper during
installation.
You can use this mapper for creating an entry for the CA in the directory and for
mapping the CA certificate to the CA's entry in the directory.
By default, the mapper is configured to create an entry for the CA in the directory
and the default DN pattern for locating the CA's entry is as follows:
UID=$subj.cn,OU=people,O=$subj.o
256
Netscape Certificate Management System Plug-ins Guide • October 2001
is an instance of the
LdapCaCertMap
LdapCaSimpleMap

Advertisement

Table of Contents
loading

This manual is also suitable for:

Netscape management system 4.5

Table of Contents