TECHNICAL WHITE PAPER / 2
Table of Contents
Introduction to TLS
4
Server Authentication
4
Mutual Authentication
4
Certificates and Public Key Infrastructure
5
Expiration and Revocation
5
Certificate Standards
6
Certificate Storage
6
How VCM Uses Certificates
7
The Enterprise Certificate
7
The Collector Certificate
10
Agent Certificates
10
TLS Machine Security Level
11
Creating and Installing Certificates for Collectors
12
Installation of Certificates to Collectors
12
Installation of Certificates to Additional Collectors
12
Changing Certificates
13
Renewing Certificates
13
Replacing Certificates
13
Delivering Initial Certificates to Agents
15
Installing the Agent from the Collector
15
New Installations
15
Upgrades
15
Changing Protocols from DCOM to HTTP
15
Changing Protocol from HTTP to DCOM
15
Installing the Agent from a Disk (Windows only)
16
Using CMAgtInstall.exe via Network Share to Install the Agent (Windows only)
16
UNIX/Linux or Mac OS X
16
Installing the Agent Using a Provisioning System
16
TLS Implementation for VCM