Ssl Server Key Pair And Certificate - Netscape MANAGEMENT SYSTEM 4.5 Installation And Setup Manual

Hide thumbs Also See for NETSCAPE MANAGEMENT SYSTEM 4.5:
Table of Contents

Advertisement

After you've installed the certificate successfully, go to the Tasks tab and stop
2.
the Certificate Manager.
Update the Certificate Manager's configuration to recognize the new key pair
3.
and certificate.
In the Certificate Manager host machine, go to this directory:
a.
<server_root>/cert-<instance_id>/config
Open the configuration file (
b.
Add the following lines to the configuration file:
c.
ca.crl_signing.cacertnickname=<nickname> cert-<instance_id>
ca.crl_signing.defaultSigningAlgorithm=<signing_algorithm>
ca.crl_signing.tokenname=<token_name>
Edit the lines as below. Replace
d.
<nickname>
<instance_id>
instance.
<signing_algorithm>
the key type is RSA, or
<token_name>
and the certificate. If you used the internal/software token, use
Key Storage Token
For example, your edited entries might look like this:
ca.crl_signing.cacertnickname=crlSigningCert cert-demoCA
ca.crl_signing.defaultSigningAlgorithm=MD5withRSA
ca.crl_signing.tokenname=Internal Key Storage Token
Save your changes and close the file.
e.
Restart the Certificate Manager. Now the Certificate Manager is ready to use
4.
the CRL signing certificate to sign the CRLs it generates.

SSL Server Key Pair and Certificate

Every Certificate Manager you have installed has at least one SSL server certificate.
The first time you generated this certificate is when you installed the Certificate
Manager. The default nickname for the certificate is
Server-Cert cert-<instance_id>
instance in which the Certificate Manager is installed.
CMS.cfg
with the name assigned to the CRL signing certificate.
with the name assigned to the Certificate Manager
with
MD5withRSA
SHA1withDSA
with the name of the token used for generating the key pair
as the value.
, where
Chapter 14
Keys and Certificates for the Main Subsystems
) in a text editor.
,
, or
MD2withRSA
, if the key type is DSA.
identifies the CMS
<instance_id>
Managing CMS Keys and Certificates
, if
SHA1withRSA
Internal
441

Advertisement

Table of Contents
loading

Table of Contents