Netscape MANAGEMENT SYSTEM 6.0 Installation And Setup Manual page 60

Hide thumbs Also See for NETSCAPE MANAGEMENT SYSTEM 6.0:
Table of Contents

Advertisement

System Overview
Policy plug-in modules for setting extensions in certificates (Continued)
Table 1-4
Plug-in module name
NSCCommentExt
NSCertTypeExt
OCSPNoCheckExt
PolicyConstraintsExt
PolicyMappingsExt
PrivateKeyUsagePeriodExt
RemoveBasicConstraintsExt
SubjectAltNameExt
SubjectDirectoryAttributesExt
SubjectKeyIdentifierExt
60
Netscape Certificate Management System Installation and Setup Guide • March 2002
Description
Adds the Netscape Certificate Comment extension to certificates. The
extension can be used to include textual comments in certificates.
Adds the Netscape Certificate Type extension to certificates of a specified
type. This extension can be used to limit the purposes for which a
certificate can be used. It has been deprecated in favor of the X.509 v3
extensions extKeyUsage and basicConstraints.
Adds the OCSP No Check extension to certificates. The extension, which
should be used in OCSP responder certificates only, indicates how
OCSP-compliant applications can verify the revocation status of the
certificate an authorized OCSP responder uses to sign OCSP responses.
Adds the Policy Constraints extension to certificates. The extension,
which can be used in CA certificates only, constrains path validation in
two ways. It can be used to prohibit policy mapping or to require that
each certificate in a path contain an acceptable policy identifier.
Adds the Policy Mappings extension to certificates. The extension lists
one or more pairs of OIDs, each pair identifying two policy statements of
two CAs. The pairing indicates that the corresponding policies of one CA
are equivalent to policies of another CA.
Adds the Private Key Usage Period extension to certificates. The
extension allows the certificate issuer to specify a different validity period
for the private key than the one specified for the corresponding
certificate.
Detects and removes the Basic Constraints extension in certificate
requests.
Adds the Subject Alternative Name extension to certificates of a specified
type. This extension includes one or more alternative (non-X.500) names
for the identity bound by the CA to the certified public key. It may be
used in addition to the certificate's subject name or as a replacement for
it.
Adds a Subject Directory Attributes extension to certificates. The
extension is used to specify any desired directory attribute values for the
subject of the certificate.
Adds the Subject Key Identifier extension to certificates of a specified
type. This extension identifies the public key certified by this certificate. It
provides a way of distinguishing public keys if more than one is available
for a given subject name, for example after the certificate has been
renewed with a new key.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.0

Table of Contents