Online Certificate Status Manager Deployment Considerations
Interfaces
When you install an Online Certificate Status Manager, three interfaces are
enabled. The installation wizard lets you choose the ports these interfaces listen on.
The following interfaces, and associated ports will be created:
•
An Administrative interface that is accessible by default only to members of
the Administrator and Auditor group. Administrators can configure any of the
settings of the server. Most basic functionality and subsystem specific
configuration to the subsystem can be done using the administrative interface.
The administrative interface listens to requests on the SSL Administration Port.
This is the port the CMS administrative interface listens to, and that is accessed
by administrators and auditors using the Java based CMS Console GUI
application.
•
An Agent Services interface that is accessible by default only to members of the
Online Certificate Status Manager Agent group. The agent's services interface
is an HTML interface accessible through HTTPS that authenticates agents
using their certificates. The default interface provides all the functionality
needed by agents for a Online Certificate Status Manager and is completely
customizable.
The agent services interface listens to requests and communicates on the SSL
Agent Services Port. This is the port that the agent goes to in order to access the
agent services interface. The agent services interface is accessible at the
following location:
https://<cms_host_dnsname>:<port_number>
For example:
https://services.example.com:7878
•
An End-Entity interface that is accessible by anyone who can access that URL.
The end-entity interface listens for requests on the SSL or Non-SSL End Entity
Ports. It does not contain HTML forms, but is used for requests to the OCSP
responder. Both are configured during installation.
https://<cms_host_dnsname>:<port_number>
For example:
https://services.example.com:7172
174
Netscape Certificate Management System Administrator's Guide • February 2003
Need help?
Do you have a question about the NETSCAPE MANAGEMENT SYSTEM 6.1 - ADMINISTRATOR and is the answer not in the manual?
Questions and answers