Testing Publishing to Files
630
Red Hat Certificate System Administrator’s Guide • September 2005
If you configured the Directory Server for SSL communication with client
authentication, select
SSL client authentication
, select the
Use SSL
communication
option, and identify the certificate that the Certificate Manager must
use for SSL client authentication to the directory.
4.
To save your changes, click Save.
The server attempts to connect to the specified Directory Server. If the information you
specified is incorrect, the server displays an error message and you will need to correct
the information and save your changes again.
If the changes you made require you to restart the server, you will be prompted
accordingly. In that case, restart the server.
Testing Publishing to Files
To verify that the Certificate Manager is publishing certificates and CRLs correctly to files,
follow these steps:
1.
Go to the end-entity interface and request a certificate.
2.
Go to the agent services interface and approve the request if you have an
agent-approved enrollment configuration. If you set up automatic enrollment, you can
skip this step.
3.
Download the certificate into your browser.
4.
Check whether the server generated the DER-encoded file containing the certificate.
To check whether the server published the certificate as a binary blob to the specified
directory, go to the directory you specified for the server to publish certificates. You
should see a file with name similar to
cert-<serial_number>.der
, where
<serial_number>
specifies the serial number of the certificate contained in the file.
5.
Convert the DER-encoded certificate to its base 64-encoded format using the Binary to
ASCII tool (see Chapter 8, “Binary to ASCII Tool” of
CS Command-Line Tools
Guide
).
To convert the DER-encoded certificate to its base 64-encoded form:
a.
Open a command window.
b.
Go to this directory:
<server_root>/bin/cert/tools
Summary of Contents for CERTIFICATE 7.1 ADMINISTRATOR
Page 1: ...Administrator s Guide Red Hat Certificate System Version7 1 September 2005 ...
Page 22: ...22 Red Hat Certificate System Administrator s Guide September 2005 ...
Page 128: ...Cloning a CA 128 Red Hat Certificate System Administrator s Guide September 2005 ...
Page 368: ...ACL Reference 368 Red Hat Certificate System Administrator s Guide September 2005 ...
Page 460: ...Constraints Reference 460 Red Hat Certificate System Administrator s Guide September 2005 ...
Page 592: ...CRL Extension Reference 592 Red Hat Certificate System Administrator s Guide September 2005 ...