Profile Policy Set
Defaults
Constraints
The keytype should be RSA.
keyminLength = 512
keymaxLength = 4096
The key length should be between
512 and 4096.
set4 - Authority Key Identifier
No defaults
No constraints
set5 - AIA extension
authinfoaccesscritical
= false
authinfoaccessADMeth-
od_0= OID
authinfoaccessADLoca-
tionType_0=URIName
authinfoaccessADE-
nable_0=true
authinfoaccessADLoca-
tion_0=
No constraints
set6 - Key Usage
Populates a Key Usage extension
(
2.5.29.15
) to the request. The
default values are as follows:
Criticality=true
Digital Signature=true
Non-Repudiation=true
Key Encipherment=true
Data Encipherment=false
Key Agreement=false
Key
Certificate
Sign=false
Key CRL Sign=false
Encipher Only=false
Decipher Only=false
Accepts the Key Usage extension,
if present, only when the default
values are set.
set7 - Extended Key Usage
Populates an Extended Key Usage
extension to the request. The de-
fault
values
are
Critical-
ity=false
and
OIDs=1.3.6.1.5.5.7.3.2,
1.3.6.1.5.5.7.3.4
.
No constraints
set8 - Subject Alt Name Constraint
Populates a Subject Alternative
Name extension (
2.5.29.17
) to
the request. The default values are
Criticality=false
and
Re-
cord
#0{Pattern:$request.req
uester_email$,Pattern
No constraints
3.1. Example Profile
Profiles
Summary of Contents for CERTIFICATE SYSTEM 7.2 - AGENT GUIDE
Page 1: ...Red Hat Certificate System Agent Guide 7 2 ...
Page 3: ......