Novell LINUX ENTERPRISE SERVER 10 SP2 - INSTALLATION AND ADMINISTRATION Installation Manual page 838

Hide thumbs Also See for LINUX ENTERPRISE SERVER 10 SP2 - INSTALLATION AND ADMINISTRATION:
Table of Contents

Advertisement

must be entered manually. You must always enter several passwords (see Table 42.3,
"Passwords during LDAP Export" (page 820)).
Table 42.3
Password
LDAP Password
Certificate Password
New Certificate Password
Certificates, CAs, and CRLs can be exported to LDAP.
Exporting a CA to LDAP
To export a CA, enter the CA as described in Section 42.2.2, "Creating or Revoking
a Sub-CA" (page 814). Select Extended > Export to LDAP in the subsequent dialog,
which opens the dialog for entering LDAP data. If your system has been configured
with the YaST LDAP client, the fields are already partly completed. Otherwise,
enter all the data manually. Entries are made in LDAP in a separate tree with the
attribute "caCertificate".
Exporting a Certificate to LDAP
Enter the CA containing the certificate to export then select Certificates. Select the
required certificate from the certificate list in the upper part of the dialog and select
Export > Export to LDAP. The LDAP data is entered here in the same way as for
CAs. The certificate is saved with the corresponding user object in the LDAP tree
with the attributes "userCertificate" (PEM format) and "userPKCS12" (PKCS12
format).
Exporting a CRL to LDAP
Enter the CA containing the CRL to export and select CRL. If desired, create a new
CRL and click Export. The dialog that opens displays the export parameters. You
can export the CRL for this CA either once or in periodical time intervals. Activate
the export by selecting Export to LDAP and enter the respective LDAP data. To
do this at regular intervals, select the Repeated recreation and export radio button
and change the interval, if appropriate.
820
Installation and Administration
Passwords during LDAP Export
Meaning
Authorizes the user to make entries in the LDAP tree.
Authorizes the user to export the certificate.
The PKCS12 format is used during LDAP export.
This format forces the assignment of a new password
for the exported certificate.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Suse linux enterprise server 10 sp3

Table of Contents