Topology Decisions
Certificate Manager and Data Recovery Manager in different instances
Figure 4-3
The Data Recovery Manager is intended for archival and recovery of private
encryption keys only. Therefore end entities must be using either a browser that
supports dual-key generation or a browser that is using Netscape Personal Security
Manager, which supports dual keys.
The decision to keep the Data Recovery Manager in the same instance as the
Certificate Manager or in a different instance (most likely on a different machine)
depends on many factors. These include firewall considerations, the physical
security required for each subsystem, and the physical location of the Certificate
Manager agent, Data Recovery Manager agent, and other persons responsible for
administering the Certificate Manager and recovering keys.
Chapter 4
Planning Your Deployment
169
Need help?
Do you have a question about the NETSCAPE MANAGEMENT SYSTEM 4.5 and is the answer not in the manual?