Topology Decisions
Single Certificate Manager
Some deployments may require only a single Certificate Manager that handles all
end-entity interactions and provides no key archival and recovery capabilities. This
Certificate Manager can use a signing certificate issued by a public certificate
authority or its own self-signed CA signing certificate to sign all the certificates it
issues.
Figure 4-1 shows the relationships among a single Certificate Manager, end
entities, and a publishing directory. The Certificate Manager can publish both
end-entity certificates and CRLs to a directory.
Certificate Manager
Single root
Figure 4-1
Chapter 4
Planning Your Deployment
165
Need help?
Do you have a question about the NETSCAPE MANAGEMENT SYSTEM 4.5 and is the answer not in the manual?