Setting Up a Remote OCSP Responder
If you selected
, fill in values as below:
ldapStore
numConns. Type the total number of LDAP directories the Online
Certificate Status Manager should check. By default, this is set to 0. If you
change the value to a postive integer, for example 1, 2, or 3, you will see
that many sets of
,
,
, and
fields. (Change
host
port
baseDN
refreshInSec
the value, click OK, and reopen the window to see the updated fields.)
host<n>. Type the fully-qualified hostname of the LDAP directory. The
name must be in the
form.
<machine_name>.<your_domain>.<domain>
For example,
.
corpDir1.example.com
port<n>. Type the nonSSL port of the LDAP directory. For example, 389.
baseDN<n>. Type the DN to start searching for the CRL. For example,
.
O=example.com
refreshInSec<n>. Type how often the connection be refreshed. The default
is 86400 seconds (that is, refresh every day).
caCertAttr. Leave the default value,
, as it is. (It's
cACertificate;binary
the attribute to which the Certificate Manager publishes its CA signing
certificate.)
crlAttr. Leave the default value,
, as
certificateRevocationList;binary
it is. (It's the attribute to which the Certificate Manager publishes CRLs.)
Chapter 21
Setting Up an OCSP Responder
705
Need help?
Do you have a question about the NETSCAPE MANAGEMENT SYSTEM 6.0 and is the answer not in the manual?
Questions and answers