669
Chapter
21
Setting Up an OCSP Responder
Netscape Certificate Management System (CMS) provides a customizable
publishing framework for the Certificate Manager, enabling it to publish
certificates and certificate revocation lists (CRLs) to any of the supported
repositories—an LDAP-compliant directory, a flat file, and an online validation
authority—using the appropriate protocol. This chapter provides an overview of
an Online Certificate Status Protocol (OCSP)-compliant PKI setup, and explains
how you can use the OCSP service built into the Certificate Manager for real-time
verification of certificates issued by the Certificate Manager. The chapter also
explains how to configure one or more Certificate Managers to publish CRLs to the
OCSP responder, called Online Certificate Status Manager, provided with
Certificate Management System.
Note that configuring the Certificate Manager to publish CRLs is optional—you
can turn this feature off without affecting any of the certificate issuance and
management operations handled by the server.
The chapter has the following sections:
•
What’s an OCSP-Compliant PKI Setup? (page 670)
•
Setting Up a Certificate Manager with OCSP Service (page 675)
•
Setting Up a Remote OCSP Responder (page 687)
Summary of Contents for NETSCAPE MANAGEMENT SYSTEM 6.0
Page 1: ...Installation and Setup Guide Netscape Certificate Management System Version6 0 March 2002...
Page 22: ...22 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 32: ...32 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 160: ...160 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 776: ...776 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 807: ...807 Part 5 Appendix Appendix A Certificate Download Specification...
Page 808: ...808 Netscape Certificate Management System Installation and Setup Guide March 2002...
Page 830: ...830 Netscape Certificate Management System Installation and Setup Guide March 2002...