exclude name *.p12
Web Server Authentication
The
Apache Web server
server
Backup
an instance of obtool running on the administrative server.
The Web server requires a signed X.509
key
pair to establish an
browser. The X.509 certificate for the Web server is self-signed by the installob
program when you install Oracle Secure Backup on the administrative server.
Figure 6–5
Figure 6–5 Web Server Authentication
Web
Client
The Web server X.509 certificate and keys are not stored in the
authentication
files in the /apache/conf subdirectory of the
password protects the certificates and keys. This password is stored in encrypted form
in the daemons file located in /admin/config/default. When the Web server
starts, it obtains the password by using a mechanism specified in the Web server
configuration file. This password is never transmitted over the network.
Revoking a Host Identity Certificate
Revoking a host
performed if the backup administrator determined that the security of a computer in
the Oracle Secure Backup
You can revoke a host identity certificate with the revhost command in obtool.
If you revoke a host identity certificate, then none of the Oracle Secure Backup service
daemons
Oracle Secure Backup Administrator's Guide for more
See Also:
information on dataset statements and catalog recovery
for the
as the obhttpd daemon. When you issue commands through the Oracle Secure
Web
tool, obhttpd repackages them as
Secure Sockets Layer (SSL)
shows the interaction between Web server and client.
SSL
Web Server
Private Key
in the Oracle Secure Backup administrative domain, but are stored in
identity certificate
administrative domain
See Also:
Oracle Secure Backup Reference for revhost syntax and
semantics
accept connections from that host. Revocation is not reversible. If you revoke
Host Authentication and Communication
administrative domain
obtool
commands and passes them to
certificate
and associated
connection with a client Web
Commands
obhttpd
observiced
Web Server
Administrative
Certificate
Server
Oracle Secure Backup
is an extreme measure that would only be
had been breached in some way.
Managing Security for Backup Networks 6-13
runs on the
administrative
public key/private
obtool
wallet
used for
host
home. A single
Need help?
Do you have a question about the Secure Backup and is the answer not in the manual?