Netscape MANAGEMENT SYSTEM 6.0 Installation And Setup Manual page 63

Hide thumbs Also See for NETSCAPE MANAGEMENT SYSTEM 6.0:
Table of Contents

Advertisement

Independent CAs can issue and manage certificates to their users listed in any
LDAP-compliant directory.
For more information on setting up Certificate Management System to publish
certificates and CRLs, see Chapter 19 through Chapter 21.
Table 1-6 lists the mapper modules supported by Certificate Management System
out of the box. Mapper modules help you configure a Certificate Manager to use
specific rules to map or locate a specific entry, such as a CA's entry or an
end-entity's entry, in a specified LDAP directory; once the correct entry is located,
the server publishes the certificate or CRL to the correct attribute in the entry using
a publisher module (explained later in this section). Because it's not required to
map entries in a file and in an online validation authority, no mapper modules are
provided for mapping objects in a file or a Online Certificate Status Manager.
Table 1-6
Default mapper plug-in modules for mapping certificates and CRLs
Plug-in module name
LdapCaSimpleMap
LdapDNCompsMap
LdapDNExactMap
LdapSimpleMap
LdapSubjAttrMap
Table 1-7 lists the publisher modules supported by Certificate Management System
out of the box. Publisher modules help you configure a Certificate Manager to
publish certificates and CRLs to the mapped directory entries, to files, or to the
Online Certificate Status Manager.
Function
Maps the CA certificate to the CA's directory entry by formulating the entry's DN
from components specified in the certificate's issuer name and attribute variable
assertion (AVA) constants. Optionally, the plug-in can also create an entry for the
CA in the directory.
Maps a certificate to a directory entry by formulating the entry's DN from
components (such as CN, OU, O, and C) in the certificate's subject name and using it
as the search DN to locate the entry in the directory.
Maps a certificate to a directory entry by searching for the entry whose DN exactly
matches the certificate subject name.
Maps a certificate to a directory entry by formulating the entry's DN from
components specified in the certificate's subject name and attribute value assertion
(AVA) constants.
Maps a certificate to a directory entry by searching for the entry that contains the
LDAP attribute named certSubjNameAttr whose value exactly matches the
certificate subject name.
Chapter 1
Introduction to Certificate Management System
System Overview
63

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.0

Table of Contents