Netscape MANAGEMENT SYSTEM 6.01 Installation And Setup Manual page 376

Hide thumbs Also See for NETSCAPE MANAGEMENT SYSTEM 6.01:
Table of Contents

Advertisement

Privileged-User Types and Responsibilities
When the user receives the certificate from the public CA, the user imports the
2.
certificate into the web browser that he or she will use to access the subsystem.
It is a good idea to ask the user to inform you that the certificate has been
installed.
Ask the user to send you the certificate information sent by the public CA. In
3.
the information that you receive, locate the user's certificate in base-64 encoded
form.
You can also get the user's certificate from the public CA that issued it. Access
the public CA site, search for the user's certificate, and locate the certificate in
base-64 encoded form.
Copy the base-64 encoded certificate, including the
4.
CERTIFICATE-----
file.
The copied information should look similar to the following example:
-----BEGIN CERTIFICATE-----
MIICJzCCAZCgAwIBAgIBAzANBgkqhkiG9w0BAQQFADBCMSAwHgYDVQQKExdOZXRzY2FwZSBDb21tdW5pYF
0aW9uczngjhnMVQ2VydGlmaWNhdGUgQXV0aG9yaXR5MB4XDTk4MDgyNzE5MDAwMFoXDTk5MDIyMzE5MDAw
MnbjdgngYoxIDAeBgNVBAoTF05ldHNjYXBlIENvbW11bmljYXRpb25zMQ8wDQYDVQQLEwZQZW9wbGUxFzA
VBgoJkiaJkIsZAEBEwdzdXByaXlhMRcwFQYDVQQDEw5TdXByaXlhIFNoZXR0eTEjMCEGCSqGSIb3DbndgJ
ARYUc3Vwcml5YUBuZXRzY2FwZS5jb20wXDANBgkqhkiG9w0BAQEFAANLADBIAkEAoYiYgthgtbbnjfngjn
jgnagwJjAOBgNVHQ8BAf8EBAMCBLAwFAYJYIZIAYb4QgEj
-----END CERTIFICATE-----
Save the text file and use it to store a copy of the certificate in a subsystem's
5.
internal database (see "Step 3. Store the Agent's SSL Client Certificate in the
Internal Database" on page 395).
Getting an Agent's Certificate from Certificate Management System
The following general instructions explain how a user can get a client certificate
from Certificate Management System and how you can copy that certificate (in
base-64 encoded form) to the internal database of a subsystem:
The user sends a client certificate request to Certificate Management System
1.
from the client machine that he or she will use to access the subsystem from the
Agent Services interface. It is important that the user generate and submit this
request from the machine he or she will use later to access the subsystem,
because part of this request process generates a private key on the local
machine. Alternatively, if location independence is required, the user can also
use a hardware token, such as a smart card, to generate and store the key pair
(and the certificate when the user receives it from the public CA).
376
Netscape Certificate Management System Installation and Setup Guide • May 2002
and
-----END CERTIFICATE-----
-----BEGIN
marker lines, to a text

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.01

Table of Contents