Using the Default Demo
Chapter
3
Default Demo Installation
143
10.
In the Policy Editor dialog box, provide the following information:
minSize:
1024
maxSize:
2048
exponents:
accept the default setting
enable:
true
predicate:
HTTP_PARAMS.certType==client
The
predicate
indicates that this policy will be applied to certificate requests
for client certificates only. The
minSize
sets the minimum allowed length for
the RSA key pair used to generate the request; requests with shorter RSA keys
will be rejected. The policy is turned on for all requests to this Certificate
Manager by setting
enabled
to true.
11.
Click OK to save the changes. The
RSAKeyRule
should now be listed as
enabled
in the Policy Rules Management tab.
That is all you need to do. The policy will now be enforced on all requests for client
certificates. You will see how this policy works in the next part of the
demonstration when you enroll for a client certificate.
Use an LDAP Directory
To test using Certificate Management System with an LDAP directory, you will use
Netscape Console’s CMS window to enable directory-based authentication using
the configuration directory that you installed with the demo. You will add a user
(
User2
) to the directory, and then enroll for a certificate as
User2
using
directory-based enrollment.
Summary of Contents for NETSCAPE MANAGEMENT SYSTEM 6.0
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version6 0 March 2002...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 160: ...160 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 776: ...776 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 807: ...807 Part 5 Appendix Appendix A Certificate Download Specification...
Page 808: ...808 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 830: ...830 Netscape Certificate Management System Installation and Setup Guide March 2002...