Privatekeyusageperiodext - Netscape MANAGEMENT SYSTEM 6.1 - ADMINISTRATOR Administrator's Manual

Table of Contents

Advertisement

Extension-Specific Policy Module Reference
Table 11-36 PolicyMappingsExt Configuration Parameters (Continued)
Parameter
policyMap<n>.
issuerDomainPolicy
policyMap<n>.
subjectDomainPolicy

PrivateKeyUsagePeriodExt

The
Key Usage Period Extension to certificates. The extension allows the certificate issuer
to specify a different validity period for the private key than the one specified for
the corresponding certificate. The extension is intended for use with digital
signature keys.
For general information about this extension, see "privateKeyUsagePeriod" on
page 732.
Table 11-37 PrivateKeyUsagePeriodExt Configuration Parameters
Parameter
Description
Specifies whether the rule is enabled or disabled. Select to enable, deselect to disable.
enable
Specifies the predicate expression for this rule. If you want this rule to be applied to
predicate
all certificate requests, leave the field blank (default). To form a predicate expression,
see "Using Predicates in Policy Rules," on page 485.
Select to mark critical, deselect to mark noncritical (default).
critical
556
Netscape Certificate Management System Administrator's Guide • February 2003
Description
Specifies the OID assigned to the policy statement<n> of the issuing CA that
you want to map with the policy statement of another CA.
Permissible values: Any valid OID specified in dot-separated numeric
component notation (see the example). The OID that you specify should be in
the registered subtree of IDs reserved for your company's use. Although you
can invent your own OIDs for the purposes of evaluating and testing this
server, in a production environment, you should comply with the ISO rules for
defining OIDs and for registering subtrees of IDs. See Appendix H, "Object
"
Identifiers
for information on allocating private OIDs.
Example: 1.2.3.4.5
Specifies the OID assigned to the policy statement<n> of the subject CA that
corresponds to the policy statement of the issuing CA.
Permissible values: Any valid OID specified in dot-separated numeric
component notation (see the example).
Example: 6.7.8.9.10
PrivateKeyUsagePeriodExt
plug-in module enables you to add the Private

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.1

Table of Contents