1. About This Guide 1
1.1. Required Concepts ................................................................................................1
1.2. What Is in This Guide ............................................................................................1
1.3. Examples and Formatting ......................................................................................2
1.3.1. File Locations for Examples and Commands ........................................................2
1.3.2. Using Mozilla LDAP Tools ...................................................................................2
1.3.3. Default Port Numbers .........................................................................................3
1.3.4. Guide Formatting ................................................................................................3
1.4. Additional Reading ................................................................................................4
1.5. Giving Feedback ...................................................................................................5
1.6. Document History ..................................................................................................5
2. Agent Services 7
2.1. Overview of Certificate System ...............................................................................7
2.1.1. Certificate System Sub-systems ..........................................................................7
2.1.2. Certificate System Users .....................................................................................9
2.2. Agent Tasks ........................................................................................................10
2.2.1. Certificate Manager Agent Services ...................................................................12
2.2.2. Data Recovery Manager Agent Services ............................................................13
2.2.3. Online Certificate Status Manager Agent Services ..............................................14
2.2.4. Token Processing System Agent Services .........................................................15
2.3. Forms for Performing Agent Operations ................................................................17
2.4. Accessing Agent Services ....................................................................................20
3. CA: Working with Certificate Profiles 23
3.1. About Certificate Profiles .....................................................................................23
3.1.1. Categories of Certificate Profiles ........................................................................23
3.2. Profile Operations Performed by CA Agents ..........................................................23
3.3. List of Certificate Profiles .....................................................................................24
3.3.1. Example Profile ................................................................................................26
3.4. How Certificate Profiles Work ...............................................................................29
3.5. Enabling and Disabling Certificate Profiles ............................................................30
3.5.1. Getting Certificate Profile Information .................................................................30
3.5.2. End User Certificate Profile ...............................................................................30
3.5.3. Policy Information .............................................................................................30
3.5.4. Approving a Certificate Profile ...........................................................................31
3.5.5. Disapproving a Certificate Profile .......................................................................31
4. CA: Handling Certificate Requests 33
4.1. Managing Requests ............................................................................................33
4.2. Listing Certificate Requests ..................................................................................34
4.2.1. Selecting a Request .........................................................................................37
4.2.2. Searching Requests .........................................................................................38
4.3. Approving Requests ............................................................................................39
4.4. Sending an Issued Certificate to the Requester .....................................................41
5. CA: Finding and Revoking Certificates 45
5.1. Basic Certificate Listing .......................................................................................45
5.2. Advanced Certificate Search ................................................................................46
5.3. Examining Certificates .........................................................................................51
5.4. Revoking Certificates ...........................................................................................52
5.4.1. Searching for Certificates to Revoke ..................................................................53
5.4.2. Revoking One or More Certificates ....................................................................54
5.5. Managing the Certificate Revocation List ..............................................................57
5.5.1. Viewing or Examining CRLs ..............................................................................57
v