Search for the
7.
KEYGEN
Insert the cursor at the end of the word
8.
, and type the following:
KEYGEN
keytype="DSA" PQG=
Paste the value of the
9.
enclose the value you pasted in double quotes (
An example of a modified
shown in bold):
<KEYGEN
keytype="DSA"
PQG="MIIBHgKBgQCsQeVqw5ID/xhSe7s4vLaOuKskCFJN23OBgWCEquYIZbMZdHN7015p
6nN7XsDpTWBccLdrSdpMxmJd8rF2agb3tbk9hjZ6//MfLCTAwvegdgAzzRwB7akOgYD/SpPFb
7rYuvPfkiRjiDDrrp9r+csWqnue9uABvJtWGnW8WVYP6wIVAMCRu0u3q+PORrJxO9Qcswzr
LpnfAoGAM3ZBjxLTPbXOgWIXHZnIFSpGAW1JzK5ywEtnabJWfiIRrWi3hyWLj98PcIc2cxbp
Oh60rwqeElUMv74V72Q2+HwIQwsPvTFyQUcBtOG40zlXoFwEqlaqDoXv3iA0Zp2XQy/JQFbx
23J+0HKz7iB7co04LCa0wDU7Z0x+oTwmsd0=
Repeat steps 7 through 9 to modify any additional
10.
Save your changes.
11.
Next, configure the Certificate Manager to accept DSA key based certificate
12.
enrollment requests.
A Certificate Manager by default only accepts RSA key-based requests. For the
server to accept DSA key based certificate requests, the value of the
parameter in the
algorithms
For instructions to change policy rules, see Chapter 18, "Setting Up Policies" of
CMS Installation and Setup Guide.
Generating Files Required By Third-Party Object
Signing Tools
When issuing an object-signing certificate to Microsoft IE, Certificate Management
System can generate a certificate (
Microsoft
tool or any third-party sign tools that rely on these files. For
signcode
the server to generate these files, you must edit the default form provided for
requesting an object-signing certificate for browsers.
tag.
KEYGEN
entry following the equal to (
DSSParms
tag is shown below (the modifications are
KEYGEN
" name="subjectKeyGenInfo">
KeyAlgRule
) and a private key (
.CER
Chapter 1
, add a space after the word
) sign and
=
).
" "
tags.
KEYGEN
policy rule must be set to
) files for use by
.PVK
Authentication Plug-in Modules
Enrollment Forms
.
RSA,DSA
61
Need help?
Do you have a question about the NETSCAPE MANAGEMENT SYSTEM 4.5 - PLUG-IN and is the answer not in the manual?
Questions and answers