Netscape MANAGEMENT SYSTEM 6.1 - ADMINISTRATOR Administrator's Manual page 323

Table of Contents

Advertisement

If you submitted the request to a Certificate Manager and if you have agent
6.
privileges for that Certificate Manager, log in to its Agent Services interface,
locate the request, and check the request for required extensions. (If you
submitted the request to any other CA, you must ask the person managing that
CA to make the same changes to the request before approving it.)
Make sure that only the
request. For certificates with no Netscape Certificate Type extensions, the Key
Usage extension must be included with
Approve the request.
7.
Once you have the certificate ready, restart the wizard and install the certificate
8.
in the Certificate Manager's database. For general instructions to use the
wizard to add a certificate, see "Using the Wizard to Install a Certificate or
Certificate Chain" on page 309.
Note that the default nickname for the certificate is
crlSigningCert cert-<instance_id>
CMS instance in which the Certificate Manager is installed.
After you've installed the certificate successfully, go to the Tasks tab and stop
9.
the Certificate Manager.
Configure the Certificate Manager to use this certificate.
10.
After you install the certificate, configure the Certificate Manager to use the
new certificate for SSL client authentication to the publishing directory. For
instructions, see.
Check the Certificate Database for the CA Certificate
The CA that signed the agent's SSL client certificate must be trusted by the
subsystem that services requests from the agent. Make sure that this CA's
certificate exists in the subsystem's certificate database (internal or external) and
that it is trusted. To check whether the CA's certificate exists in your subsystem's
certificate database, follow the instructions in "Managing the Certificate Database"
on page 294.
If the CA certificate isn't listed, follow the instructions in "Using the Wizard to
Install a Certificate or Certificate Chain" on page 309 and add the certificate to
the certificate database.
If the CA's certificate is listed but untrusted, follow the instructions in
"Changing the Trust Settings of a CA Certificate" on page 296 and change the
trust setting to trusted.
option for certificate type is selected in the
SSL Client
Signing
, where
Configuring the Server's Security Preferences
and
bits set.
Encryption
identifies the
<instance_id>
Chapter 7
Administrative Basics
323

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.1

Table of Contents