Chapter 14 Managing Cms Keys And Certificates - Netscape MANAGEMENT SYSTEM 4.5 Installation And Setup Manual

Hide thumbs Also See for NETSCAPE MANAGEMENT SYSTEM 4.5:
Table of Contents

Advertisement

Managing CMS Keys and Certificates
The main subsystems of Netscape Certificate Management System (CMS)—the
Certificate Manager, Registration Manager, Data Recovery Manager and Online
Certificate Status Manager—use certificates for various purposes, including
authentication during SSL-enabled communication. For example, when a
Registration Manager forwards a certificate issuance request to a Certificate
Manager for signing, the Certificate Manager expects the Registration Manager to
have performed SSL client authentication before processing the request.
When you installed Certificate Management System, the installation program
prompted you to generate the required certificates for the subsystems you chose to
install. This chapter provides an overview of those certificates and it explains how
to perform operations such as renewing the existing certificates before their
validity period expires, getting new certificates for the subsystems, adding trusted
CA certificates and certificate chains to the CMS trust database, and changing the
trust setting of CA certificates. The chapter also explains the certificate Setup
Wizard, which automates the process of requesting and installing CMS certificates.
The chapter has the following sections:
Keys and Certificates for the Main Subsystems (page 436)
Tokens for Storing CMS Keys and Certificates (page 450)
Hardware Cryptographic Accelerators (page 455)
Certificate Setup Wizard (page 456)
Configuring the Server's Security Preferences (page 478)
Getting New Certificates for the Subsystems (page 485)
Renewing Certificates for the Subsystems (page 494)
Managing the Certificate Database (page 502)
Chapter 14
435

Advertisement

Table of Contents
loading

Table of Contents