Trusted Managers - Netscape MANAGEMENT SYSTEM 6.0 Installation And Setup Manual

Hide thumbs Also See for NETSCAPE MANAGEMENT SYSTEM 6.0:
Table of Contents

Advertisement

Privileged-User Types and Responsibilities
Table 13-1 Configuration parameters for checking the revocation status of agents' certificates (Continued)
Parameter name
revocationChecking.
unknownStateInterval
revocationChecking.
validityInterval
To configure a Certificate Manager or Registration Manager to verify the
revocation status of its agents' certificates:
Stop the CMS instance; see "Stopping Certificate Management System" on
1.
page 310.
Go to this directory:
2.
Open the configuration file (
3.
Locate the parameters mentioned above and edit their values as appropriate.
4.
Save your changes, and close the configuration file.
5.
Start the CMS instance; see "Starting Certificate Management System" on
6.
page 306.

Trusted Managers

Trusted managers are those CMS subsystems or managers that are connected to
other CMS subsystems and that are trusted to perform specific functions for them.
In other words, a trusted manager acts as a front end to the subsystem that trusts it,
performing specific functions, depending on the subsystem to which it is
connected. You establish this trust between the two subsystems by configuring
them to function in certain way.
380
Netscape Certificate Management System Installation and Setup Guide • March 2002
Description
The default interval is o seconds.
Specifies how long, in seconds, the cached certificates are
considered valid. Be judicious when choosing the interval,
especially when configuring a Registration Manager. For
example, if you configure the validity period to be 60 seconds,
the server discards the certificates in its cache every minute
and attempts to retrieve them from their source—the
Certificate Manager uses its internal database to retrieve and
verify the revocation status of the certificates, whereas the
Registration Manager retrieves certificates from its own
internal database and then requests the Certificate Manager
for the revocation status of these certificates.
The default validity period is 120 seconds (2 minutes).
<server_root>/cert-<instance_id>/config
) in a text editor.
CMS.cfg

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.0

Table of Contents