Netscape MANAGEMENT SYSTEM 6.2 - ADMINISTRATOR Administrator's Manual page 622

Table of Contents

Advertisement

Setting Up Publishing
For LDAP publishing, you need to set up Mappers to enable an entries' DN to
4.
be derived from the certificate's subject name. Generally, you will need to set
one up for the CA certificate, CRLs and for user certificates. You can also set
more than one up for a particular type. You might do this, for example, if you
have two sets of users from different divisions of your company who are
located in different parts of the directory tree. You might create one Mapper for
each of the groups that specifies a different branch of the tree.
For complete details about setting up Mappers, see "Configuring Mappers," on
page 632.
You set up Rules to determine what exactly gets published where. Rules work
5.
independently, not in tandem. A certificate or CRL that is being published is
matched against every rule. Any rule to which it matches is activated. In this
way, the same certificate can be published to a file and to an LDAP directory
by matching a file-based rule and matching a directory-based rule.
You can set up rules for each object type: CA certificate, CRL, user certificate,
and cross-pair certificate, or you can even further divide the rules so that you
have different rules for different kinds of certificates, or different kinds of
CRLs.
The rule first determines if the object meets the rule, and then where it is to be
published. Determining if the object meets the rule is done by matching the
type and predicate set up in the rule with the object itself. Determining where
matching objects are published is determined by the Publisher and Mapper
that is associated with this rule.
For complete details about setting up Rules, see "Modifying Publishing Rules
for Certificates and CRLs," on page 644.
If you are publishing CRLs, you must set up CRLs before you can publish
6.
them. See Chapter 14, "Revocation and CRLs" for complete details.
For LDAP publishing, you need to configure the Directory Server you will be
7.
publishing to. See "Configuring the Directory for LDAP Publishing," on page
655 for details.
Enable Publishing. You should enable publishing after setting up Publishers,
8.
Mappers and Rules. Once it is enabled, the server will start publishing. If you
have not finished setting up, publishing may not work correctly, or at all.
For complete details, see "Enabling Publishing," on page 651.
622
Netscape Certificate Management System Administrator's Guide • June 2003

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.2

Table of Contents