Dsakeyconstraints Plug-In Module - Netscape MANAGEMENT SYSTEM 6.0 - PLUG-IN Manual

Table of Contents

Advertisement

Description of parameters defined in the AttributePresentConstraints module (Continued)
Table 3-2
Parameter
Description
Specifies the maximum number of connections permitted to the LDAP directory;
ldap.ldapconn.
when needed, connection pool can grow to this many (multiplexed) connections.
maxConns
Permissible values: 3 to 10; the default value is 5.
Example: 9
Specifies the LDAP attribute, the presence of which is to be checked in the
attribute
certificate-enrollment request.
Permissible values: Valid directory attributes, separated by commas; the default
value is pin.
Example: pin
If this parameter is non-empty, the attribute value must match this value for the
value
request to proceed to the next stage.

DSAKeyConstraints Plug-in Module

The
DSAKeyConstraints
policy. This policy imposes constraints on the following:
The minimum and maximum sizes for keys
The sizes of exponents
The policy restricts the key size to one of the sizes, such as 512 or 1024, supported
by Certificate Management System.
You may apply this policy to end-entity certificate enrollment and renewal
requests. For example, if you want your CA to certify public keys up to 512 bits in
length for end users and 1024 for servers, you can configure Certificate
Management System to do so using the policy.
During installation, Certificate Management System automatically creates an
instance of the DSA key constraints policy. See "DSAKeyRule Rule" on page 94.
plug-in module implements the DSA key constraints
Chapter 3
DSAKeyConstraints Plug-in Module
Constraints Policy Plug-in Modules
91

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the NETSCAPE MANAGEMENT SYSTEM 6.0 - PLUG-IN and is the answer not in the manual?

Questions and answers

This manual is also suitable for:

Certificate management system 6.0

Table of Contents