Step 10. Use Master Ca's Agent Certificate In Clone Cas - Netscape MANAGEMENT SYSTEM 6.01 Installation And Setup Manual

Hide thumbs Also See for NETSCAPE MANAGEMENT SYSTEM 6.01:
Table of Contents

Advertisement

Cloning a Certificate Manager
Before selecting an algorithm, make sure that Certificate Manager has the
algorithm enabled.
Click Display to examine the CRL (before updating it).
4.
The CRL appears in the browser window. In the list, look for the certificate
revoked by the clone Certificate Manager. If you don't see the certificate, check
logs to resolve the problem.
If you want to update the CRL with the latest certificate revocation
5.
information, use the browser's Back button to return to the previous page and
click Update.
Step 10. Use Master CA's Agent Certificate in
Clone CAs
This step is optional.
The procedure below explains how to use the master Certificate Manager's agent
certificate for a clone Certificate Manager (instead of creating a new agent
certificates for clone CAs).
Go to the configuration directory of a cloned CA:
1.
<server_root>/cert-<instance_id>config
Open the configuration file (
2.
Locate this line:
3.
Change the value to
4.
This configures the cloned CA in to a mode where it expects a certificate (that
was already issued and chains properly) to be presented when you access its
agent interface.
Restart the clone CA.
5.
Use Netscape Console and open the CMS window for the clone CA instance.
6.
298
Netscape Certificate Management System Installation and Setup Guide • May 2002
SHA-1 with DSA generates a 160-bit message digest. Before choosing
SHA-1 with DSA, make sure your applications support it. Communicator
4.0 (or later) and Netscape server products with a version number greater
than 4.0 support it.
agentgateway.enableAdminEnroll=true
false
) in a text editor.
CMS.cfg
:
agentgateway.enableAdminEnroll=false

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.01

Table of Contents