Crldistributionpointsext - Netscape MANAGEMENT SYSTEM 6.2 - ADMINISTRATOR Administrator's Manual

Table of Contents

Advertisement

Extension-Specific Policy Module Reference
Table 11-20 CertificateScopeOfUseExt Configuration Parameters (Continued)
Parameter
entry<n>_port_
number

CRLDistributionPointsExt

The
Distribution Points Extension to certificates. This extension, when present in a
certificate, identifies one or more locations from where the application that is
validating the certificate can obtain the CRL information (to verify the revocation
status of the certificate).
520
Netscape Certificate Management System Administrator's Guide • June 2003
Description
• If you selected ediPartyName, the value must be an IA5String. For
example, Example Corporation.
• If you selected URL, the value must be a non-relative URI, including both a
scheme (for example, http) and a fully qualified domain name or IP
address of the host. For example, http://webSite.example.com.
• If you selected iPAddress, the value must be a valid IP address specified in
dot-separated numeric component notation. The syntax for specifying the IP
address is as follows:
IPv4 address must be in the n.n.n.n format; for example, 128.21.39.40.
IPv4 address with netmask must be in the n.n.n.n,m.m.m.m format. For
example, 128.21.39.40,255.255.255.00.
For IP version 6 (IPv6), the address should be in the form with netmask
separated by a comma. Examples of IPv6 addresses with no netmask are
0:0:0:0:0:0:13.1.68.3 and FF01::43. Examples of IPv6 addresses
with netmask are
0:0:0:0:0:0:13.1.68.3,FFFF:FFFF:FFFF:FFFF:FFFF:
FFFF:255.255.255.0 and
FF01::43,FFFF:FFFF:FFFF:FFFF:FFFF:FFFF:FF00:0000.
• If you selected OID, the value must be a unique, valid OID specified in
dot-separated numeric component notation. Although you can invent your
own OIDs for the purposes of evaluating and testing this server, in a
production environment, you should comply with the ISO rules for defining
OIDs and for registering subtrees of IDs. See
Identifiers"
for information on allocating private OIDs. For example,
1.2.3.4.55.6.5.99.
• If you selected otherName, the value must be the absolute path to the file
that contains the base-64 encoded string for the site. For example,
/usr/netscape/servers/ext/aia/othername.txt.
Specifies the port number.
Example: 8888
CRLDistributionPointsExt
Appendix H, "Object
plug-in module enables you to add the CRL

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.2

Table of Contents