Configuring Key Archival and Recovery Process
b.
c.
Update the JavaScript method in the enrollment form.
2.
To do this:
a.
b.
c.
d.
e.
736
Netscape Certificate Management System Installation and Setup Guide • May 2002
Use the command-line tool called
certificate from the Data Recovery Manager's certificate database. (For
information on the
certutil
http://www.mozilla.org/projects/security/pki/nss/tools/
First, go to this directory:
Next, run this command:
-d . -n kraTransportCert cert-<instance_id> -a
The transport certificate appears. View the certificate information. Make
sure that the certificate you are looking at is the correct one; the certificate
shows the DN that was specified for the transport certificate during the
installation of Data Recovery Manager.
Copy the base-64 encoded certificate, excluding the marker lines
-----BEGIN CERTIFICATE-----
text file. The copied information should look like the example below:
MIICDjCCAXegAwIBAgICAfMwDQYJKoZIhvcNAQEEBQAwdzELMAkGA1UEBhMCVVMxLDAqBgNVBAoTI0
5ldHNjYXBlIENvbW11bmljYXRpb25zIENvcnBvcmF0aW9uMREwDwYDVQQLEwhIYXJkY29yZTEnMCUG
A1UEAxMeSGFyZGNvcmUgQ2VydGlmaWNhdGUgU2VydmVyIElJMB4XDTk4MTExOTIzNDIxOVoXDTk5MD
UxODIzNDIxOVowLjELMAkGA1UEBhMCVVMxETAPBgNVBAoTCG5ldHNjYXBlMQwwCgYDVQQDEwNLUmEw
XDANBgkqhkiG9w0BAQEFAANLADBIAkEArrbDiYUI5SCdlCKKa0bEBn1m83kX6bdhytRYNkdHB95B
Go to the host system of the enrollment authority and locate the
user-enrollment form. The default forms are at this location:
<server_root>/cert-<instance_id>/web/ee
Open the enrollment form that you want to use in a text editor.
In the form, locate the
Figure 22-3 on page 734).
Add a variable for the transport certificate.
Below the commented text, add this line:
var kraTransportCert =
Open the text file that has the Data Recovery Manager's transport
certificate (the one you copied earlier) and copy the certificate.
certutil
tool, check this site:
<server_root>/cert-<instance_id>/config
<server_root>/bin/cert/tools/certutil -L
and
-----END CERTIFICATE-----
generateCRMFRequest()
to retrieve the transport
JavaScript method (see
, to a
Need help?
Do you have a question about the NETSCAPE MANAGEMENT SYSTEM 6.01 and is the answer not in the manual?
Questions and answers