Support For Open Standards; Certificate Management Formats And Protocols - Netscape MANAGEMENT SYSTEM 6.1 - ADMINISTRATOR Administrator's Manual

Table of Contents

Advertisement

Tutorials—"How To" tutorial to help demonstrate how you can create your
own plug-in modules for CMS. Each tutorial includes sample Java source code,
environment and build script and a detailed "cookbook" describing how to
build and install these plug-in modules. Additionally, some tutorials may also
contain sample configuration files.

Support for Open Standards

This section summarizes the standard message formats and protocols supported
by CMS.

Certificate Management Formats and Protocols

CMS supports the following certificate management formats and protocols. For
more details about the proposed PKIX standards listed here, see
http://www.ietf.org/html.charters/pkix-charter.html
Drafts).
Simple Certificate Enrollment Protocol (SCEP). A certificate management
protocol jointly developed by Cisco Systems and VeriSign, Inc. CEP is an early
implementation of CMC (described later in this list). CEP specifies how a
device communicates with a CA, including how to retrieve the CA's public
key, how to enroll a device with the CA, and how to retrieve a CRL. CEP uses
PKCS #7 and PKCS #10.
Certificate Request Message Format (CRMF). A message format used to
convey a request for a certificate to a Registration Manager or Certificate
Manager. A proposed standard from the Internet Engineering Task Force
(IETF) PKIX working group.
Certificate Management Message Formats (CMMF). Message formats used to
convey certificate requests and revocation requests from end entities to a
Registration Manager or Certificate Manager and to send a variety of
information to end entities. A proposed standard from the IETF PKIX working
group. CMMF is subsumed by another proposed standard, CMC (next item).
Certificate Management Messages over CMS (CMC). A general interface to
public-key certification products based on CMS and PKCS #10, including a
certificate enrollment protocol for DSA-signed certificates with Diffie-Hellman
public keys. A proposed standard from the IETF PKIX working group. CMC
incorporates CRMF and CMMF. Future versions of CMS will support this
standard as it is finalized.
Support for Open Standards
(under Internet
Chapter 1
Overview
65

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.1

Table of Contents