Revocation Status Checking Of Agent Certificates - Netscape MANAGEMENT SYSTEM 6.1 - ADMINISTRATOR Administrator's Manual

Table of Contents

Advertisement

When the user receives the certificate, the user must import the certificate into
3.
the web browser they will use to access the subsystem. It is a good idea to ask
the user to inform you that the certificate has been installed.
After the user imports the certificate into the web browser, you need to copy
the certificate (in base-64 encoded form) in order to be able to add it to a
subsystem's internal database.
Access the end entities interface.
4.
Click the Retrieval tab.
5.
In the left frame, click either the List Certificates or Search For Certificates link,
6.
and search for the user's certificate.
In the page listing the results of your search, click the Details button (next to
7.
the corresponding user's entry) to see detailed information about the
certificate.
Scroll down to the Installing This Certificate in a Client section containing the
8.
user's certificate in base-64 encoded form.
Copy the base-64 encoded certificate, including the
9.
CERTIFICATE-----
file.
Save the text file and use it to store a copy of the certificate in a subsystem's
10.
internal database. See "Setting up Administrators, Agents, and Auditors," on
page 330.
Revocation Status Checking of Agent
Certificates
You can configure a Certificate Manager and Registration Manager to check the
revocation status of an agent's certificate the server receives during SSL client
authentication. You can configure a Data Recovery Manager (or Online Certificate
Status Manager) to check the revocation status of its agents' certificates only if you
have deployed an OCSP responder and have issued agent certificates with
Authority Information Access extension pointing to the OCSP responder. For
information about adding Authority Information Access extension to certificates,
see "Configuring Policy Rules for a Subsystem" on page 491. For information about
setting up an OCSP responder, see Chapter 5, "OCSP Responder."
and
-----END CERTIFICATE-----
Agent Certificates
-----BEGIN
marker lines, to a text
Chapter 8
Authorization
341

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.1

Table of Contents