Netscape MANAGEMENT SYSTEM 6.1 - ADMINISTRATOR Administrator's Manual page 410

Table of Contents

Advertisement

Certificate-Based Enrollment
Enable the appropriate enrollment option, such as directory-based enrollment
or NIS-server based enrollment. Be sure to configure the authentication
module to compose the desired DN pattern.
To enable you to configure CMS for certificate-based enrollment, the following
three enrollment forms are provided:
Enabling certificate-based enrollment creates one link, named
under the list of user-enrollment links in the end-entity enrollment interface.
By default, the link points to the
want to use either of the other two forms,
or
to the form you want to use or add more links to the
Note that all three enrollment forms by default work with the directory-based
authentication module, named
Directory Based Enrollment" on page 389. You can use the certificate-based
enrollment forms with any of the authentication modules, for example,
directory- and PIN-based or NIS-server based authentication modules. See the
CMS Customization Guide for details.
In general, the following three hidden variables distinguish certificate-based
enrollment forms from other enrollment forms:
410
Netscape Certificate Management System Administrator's Guide • February 2003
CertBasedDualEnroll.htm
certificates—one for signing another for encryption—by submitting
pre-issued certificates as authentication tokens; when a user enrolls for a
certificate, the server verifies the CA that has issued the certificate the user
uses for authentication, uses the configured directory to formulate subject
names for the new certificates, and issues the certificates.
CertBasedEncryptionEnroll.html
enables end users to request encryption certificates by submitting
pre-issued certificates as authentication tokens; when a user enrolls for a
certificate, the server verifies the CA that has issued the certificate the user
uses for authentication, uses the configured directory to formulate the
subject name for the new certificate, and issues the certificate.
CertBasedSingleEnroll.html
enables end users to request signing certificates by submitting pre-issued
certificates as authentication tokens; when a user enrolls for a certificate,
the server verifies the CA that has issued the certificate the user uses for
authentication, uses the configured directory to formulate the subject name
for the new certificate, and issues the certificate.
CertBasedSingleEnroll.html
—this variable specifies whether certificate-based
certauthEnroll
enrollment is turned
l—this form enables end users to request dual
—this form is provided as a sample. It
—this form is provided as a sample. It
CertBasedDualEnroll.html
CertBasedEncryptionEnroll.html
, you should associate the
UidPwdDirAuth
or
.
on
off
Certificate
form. If you
Certificate
file.
index.html
, explained in "Setting Up
,
link

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.1

Table of Contents