CMS Ports
Chapter
11
Setting Up Ports
361
Agent Port
The agent port is an SSL (encrypted) port at which Certificate Management System
listens to requests from agents; agents make these requests from the appropriate
Agent Services interface.
•
The Certificate Manager and Registration Manager agents use the agent port to
process certificate issuance and management requests from end entities and to
perform certain other privileged operations over HTTPS.
•
Data Recovery Manager agents use the agent port for recovering end users’
encryption private keys over HTTPS.
Agent functions always require SSL client authentication. For a brief list of
supported agent operations, see “Agent Services Interface” on page 68.
When you install Certificate Management System, it assigns a random number
(greater than 1024) as the agent port number and prompts you to change it, if
necessary; the port number can be any number between 1 and 65535. The number
you choose for the agent port affects your agent users—all agents access Certificate
Management System by specifying the name of the server (the CMS instance) and
the agent port number in the URL. For example, if you choose port number 4430,
the URL would look like this:
https://<hostname>:4430/<subsystem>
<hostname>
is in the form
<machine_name>.<your_domain>.<domain>
<subsystem>
is a prefix identifying the subsystem that hosts the agent interface:
ca
for the Certificate Manager,
ra
for the Registration Manager,
kra
for the Data
Recovery Manager, and
ocsp
for Online Certificate Status Manager.
For example, the URL to a Certificate Manager agent interface would look like this:
https://demoCA.example.com:5600/ca
If you change the agent port number, be sure to inform your agent users.
End-Entity Ports
For requests from end entities, Certificate Management System can listen to two
ports, an SSL (encrypted) port and a non-SSL port. End entities make these
requests from the end entity services interface; see “End-Entity Services Interface”
on page 72.
Certificate Management System provides the following services through the HTTP
and HTTPS ports:
Summary of Contents for NETSCAPE MANAGEMENT SYSTEM 6.0
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version6 0 March 2002...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 160: ...160 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 776: ...776 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 807: ...807 Part 5 Appendix Appendix A Certificate Download Specification...
Page 808: ...808 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 830: ...830 Netscape Certificate Management System Installation and Setup Guide March 2002...