Netscape MANAGEMENT SYSTEM 4.5 Installation And Setup Manual page 657

Hide thumbs Also See for NETSCAPE MANAGEMENT SYSTEM 4.5:
Table of Contents

Advertisement

Configuring a Certificate Manager to Publish Certificates and CRLs
In the Destination section, identify the Directory Server instance.
3.
Host name. Type the full host name of the Directory Server instance in this
format: <
machine_name>.<your_domain>.<domain>
The Certificate Manager uses this name to locate the directory.
If you configured the Directory Server for SSL client authenticated
communication (in "Step E. Specify the Directory Authentication Method" on
page 622), the name you enter here must match the
component in the
CN
subject DN of the Directory Server's SSL server certificate. For example, the
host name may look like
.
corpDirectory.siroe.com
Port number. Type the TCP/IP port number at which the Directory Server is
listening to certificate and CRL publishing requests from the Certificate
Manager; you specified this port in "Verify the port number." on page 630. The
port you specify must be unique on the Directory Server host system; make
sure no other application is attempting to use the port.
Authentication. Select the authentication type appropriate to your Directory
Server configuration. The choices are
and
Basic authentication
SSL client
.
authentication
If you configured the Directory Server for basic authentication or for SSL
communication without client authentication, select
Basic authentication
and specify values for the Directory manager DN and password.
If you configured the Directory Server for SSL communication with client
authentication, select
, select the
SSL client authentication
Use SSL
option, and identify the certificate that the Certificate Manager
communication
must use for SSL client authentication to the directory.
Use SSL communication. Select this option if the port number you specified is
an SSL port; deselect the box if the port is non-SSL. The type of port you specify
determines whether the Certificate Manager needs to do SSL client
authentication prior to publishing certificates and CRLs to the directory.
Client certificate. Select the certificate you want the Certificate Manager to use
for SSL client authentication to the publishing directory. By default, the
Certificate Manager uses its SSL server certificate for this purpose (see "SSL
Server Key Pair and Certificate" on page 445).
Directory manager DN. Type the distinguished name (DN) of the directory
entry that you identified in "Step C. Identify an Entry That Has Write Access"
on page 621. The Certificate Manager uses this DN to access the directory tree
and to publish to the directory. The access control set up for this DN
determines whether the Certificate Manager can perform publishing.
Chapter 19
Setting Up LDAP Publishing
657

Advertisement

Table of Contents
loading

Table of Contents