Chapter 1. Overview of Red Hat Certificate System Subsystems
14
Figure 1.6. Certificate System Console
The
Configuration
tab controls all of the setup for the subsystem, as the name implies. The choices
available in this tab are different depending on which subsystem type the instance is; the CA has
the most options since it has additional configuration for jobs, notifications, and certificate enrollment
authentication.
All subsystems have four basic options:
• Users and groups
• Access control lists
• Log configuration
• Subsystem certificates (meaning the certificates issued to the subsystem for use, for example, in the
security domain or audit signing)
The
Status
tab shows the logs maintained by the subsystem. See
Chapter 15, Configuring Subsystem
Logs
for more information.
1.5.1.2. The Administrative Interface for the RA and TPS
The RA and TPS subsystems use HTML-based administrative interfaces. These are accessed by
entering the hostname and secure port as the URL, authenticating with the administrator's certificate,
and clicking the appropriate
Administrators
link.
NOTE
There is a single SSL port for RA and TPS subsystems which is used for both
administrator and agent services. Access to those services is restricted by certificate-
based authentication. The other subsystems used separate SSL ports for the agent and
administrative services, along with certificate-based authentication.
The HTML admin interface is much more limited than the Java console; the primary administrative
function is managing the subsystem users; all other administrative tasks are done by manually editing
the
CS.cfg
file.
The RA allows administrators to create and edit users and groups for the subsystem.
Summary of Contents for CERTIFICATE SYSTEM 8.0 - ADMINISTRATION
Page 42: ...20 ...
Page 43: ...Part I Setting up Certificate Services ...
Page 44: ......
Page 190: ...168 ...
Page 208: ...186 ...
Page 223: ...Part II Additional Configuration to Manage CA Services ...
Page 224: ......
Page 256: ...234 ...
Page 270: ...248 ...
Page 280: ...258 ...
Page 292: ...270 ...
Page 293: ...Part III Managing the Subsystem Instances ...
Page 294: ......
Page 408: ...386 ...
Page 438: ...416 ...
Page 439: ...Part IV References ...
Page 440: ......
Page 503: ...Netscape Defined Certificate Extensions Reference 481 OID 2 16 840 1 113730 13 ...
Page 504: ...482 ...
Page 556: ...534 ...
Page 564: ...542 ...