Novell LINUX ENTERPRISE DESKTOP 11 - SECURITY GUIDE 17-03-2009 Manual page 179

Hide thumbs Also See for LINUX ENTERPRISE DESKTOP 11 - SECURITY GUIDE 17-03-2009:
Table of Contents

Advertisement

Figure 17.2 YaST CA Module—Using a CA
4 Click Advanced and select Create SubCA. This opens the same dialog as for
creating a root CA.
5 Proceed as described in
It is possible to use one password for all your CAs. Enable Use CA Password as
Certificate Password to give your sub-CAs the same password as your root CA.
This helps to reduce the amount of passwords for your CAs.
NOTE: Check your Valid Period
Take into account that the valid period must be lower than the valid
period in the root CA.
6 Select the Certificates tab. Reset compromised or otherwise unwanted sub-CAs
here using Revoke. Revocation is not enough to deactivate a sub-CA on its own.
Also publish revoked sub-CAs in a CRL. The creation of CRLs is described in
Section 17.2.6, "Creating CRLs"
7 Finish with OK
Section 17.2.1, "Creating a Root CA"
(page 171).
(page 164).
Managing X.509 Certification
167

Advertisement

Table of Contents
loading

This manual is also suitable for:

Suse linux enterprise desktop 11

Table of Contents