Setting Up a Remote OCSP Responder
Chapter
21
Setting Up an OCSP Responder
701
2.
In the Policy Rule list, select the rule named
AuthInfoAccessExt
and click
Edit; this rule was created by default during installation.
The Policy Rule Editor window appears, showing how this rule is currently
configured.
3.
Assign the following values:
Enable.
Check this box.
predicate.
Type
HTTP_PARAMS.certType==client
.
critical.
Leave this option unchecked.
numADs.
Type
1
.
ad0_method.
Type
ocsp
or
1.3.6.1.5.5.7.48.1
.
ad0_location_type.
Select
URL
.
ad0_location.
Type the complete path to the location where the Online
Certificate Status Manager listens to calls from OCSP-compliant clients. The
path should be in this format:
http://<hostname>:<end_entity_HTTP_port>/ocsp
For example, if the host name of your Online Certificate Status Manager is
ocspResponder.example.com
and the port number assigned to the non SSL
end-entity port is 8000, the URL to type in the field would be:
http://ocspResponder.example.com:8000/ocsp
Summary of Contents for NETSCAPE DIRECTORY SERVER 6.01
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version6 01 May 2002...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide May 2002...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide May 2002...
Page 160: ...160 Netscape Certificate Management System Installation and Setup Guide May 2002...
Page 776: ...776 Netscape Certificate Management System Installation and Setup Guide May 2002...
Page 807: ...807 Part 5 Appendix Appendix A Certificate Download Specification...
Page 808: ...808 Netscape Certificate Management System Installation and Setup Guide May 2002...
Page 830: ...830 Netscape Certificate Management System Installation and Setup Guide May 2002...