Netscape MANAGEMENT SYSTEM 6.2 - ADMINISTRATOR Administrator's Manual page 764

Table of Contents

Advertisement

Standard X.509 v3 Certificate Extensions
Table G-3
Purpose of certificate
S/MIME Encryption
Certificate Signing
Object Signing
If the
enforce the usage of the certificate and key. The extension is used to limit the usage
of a key; if the extension is not present or not critical, all types of usage are allowed.
If the
multiple certificates for a given operation. For example, it is used to distinguish
separate signing and encryption certificates for users who have separate certificates
and key pairs for these operations.
CMS Version Support
Supported since CMS 4.1. Refer to "KeyUsageExt" on page 533.
nameConstraints
OID
2.5.29.30
Criticality
PKIX Part 1 requires that this extension be marked critical.
Discussion
This extension, which can used in CA certificates only, defines a name space within
which all subject names in subsequent certificates in a certification path must be
located.
CMS Version Support
Supported since CMS 4.2. Refer to "NameConstraintsExt" on page 539.
OCSPNocheck
OID
1.3.6.1.5.5.7.48.4
764
Netscape Certificate Management System Administrator's Guide • June 2003
Certificate uses and corresponding Key Usage bits (Continued)
extension is present and is marked critical, then it will be used to
keyUsage
extension is present (critical or not), it is used to select from
keyUsage
Required Key Usage bit
keyEncipherment
keyCertSign
digitalSignature

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.2

Table of Contents