Configuring Key Archival and Recovery Process
Single Sign-on Summary. Check the summary and select whether to retain or
31.
delete the
The single signon password simplifies the way you subsequently sign on to
CMS by storing the passwords for the internal database, tokens, and so on.
Each time you log on, you're only required to enter this single password. (For
details, see "System Passwords" on page 252.)
Click Next to continue.
Configuration Status. This screen should indicate that your configuration has
32.
been successful.
Click Done to exit the Installation Wizard.
You now need to create the first agent user for the Data Recovery Manager. See
33.
"Agent Certificates," on page 337 for details.
Configuring Key Archival and Recovery Process
By default, the Data Recovery Manager is not configured to archive or recover
end-entity's encryption private keys. This section explains how to set up key
archival and recovery processes.
•
Step 1. Set Up the Key Archival Process
•
Step 2. Set Up the Key Recovery Process
•
Step 3. Test Your Key Archival and Recovery Setup
Step 1. Set Up the Key Archival Process
Before proceeding with this section, you should have read "Key Archival Process"
on page 201. In particular, you should be familiar with how the key archival
process works. If you are not, see "How Key Archival Works" on page 203.
To set up the key archival process, follow these steps:
•
Step A. Deploy Clients That Can Generate Dual Key Pairs
•
Step B. Connect the Enrollment Authority and the Data Recovery Manager
•
Step C. Customize the Certificate Enrollment Form
•
Step D. Configure Key Archival Policies
230
Netscape Certificate Management System Administrator's Guide • February 2003
file.
password.conf
Need help?
Do you have a question about the NETSCAPE MANAGEMENT SYSTEM 6.1 - ADMINISTRATOR and is the answer not in the manual?