Hp Secure Key Manager User Manual Page 151

  • Download
  • Add to my manuals
  • Print
  • Page
    / 327
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 150
Table69CreateLocalCerticate Authority section components
Component Description
Certicate Authority
Name
Internal name of newly generated certicate authority. This name will be used when
referring to th
is CA in other parts of the administrative interface.
Common Name
Common name of new CA.
Organization Name
Nameoftheorganizationthatownsthiscerticate authority.
Organizational Unit
Name
Name of unit within the organization generating the certicate authority.
Locality Name
Name of city where CA is created.
State or Province
Name
Name of state where CA is created.
Country Name
Twoletter na
me of country where request is issued.
Email Address
E–mail address of person creating the CA.
Key Size
Size of key being generated. The SKM supports bit sizes 1024 and 2048.
Certicate Authority
Type
Local CAs can b
e one of two types: Self-signed root CA, or Intermediate CA Request.
When you create a self-signed root CA, you must also specify a CA Certicate
Duration and
aMaximumUserCerticate Duration, which become valid once
you click Cr
eate. Once you create a self-signed root CA, you must add it to the
trusted CA list for it to be recognized by the KMS Server. When you create an
intermediate CA request, you must sign it with either an existing intermediate CA
or your org
anization’s root CA. Certicates signed by the intermediate CA can be
veried by that same intermediate CA, by the root itself, or by any intermediate CAs
that link the signing CA with the root. This enables you to de-centralize certicate
signing a
nd verication. When creating an intermediate CA request, you must also
specify a Maximum User Certicate Duration when installing the certicate response.
This duration cannot be longer than the signing CA’s duration.
CA Certicate
Duration
Period of time for which the local CA is valid. Specify a value in days. This value
must be more than the Maximum User Certicate Duration.
Maximum User
Certicate Duration
Period of time for which certicates signed by the local CA are valid. Specify a value
in days. This value must be less than the CA Certicate Duration.
Create
Click C
reate to create the CA. Once created, the new CA appears as CA certicate
active
. A newly generated CA remains active for ve years.
CA Certicate List
This portion of the Known CAs tab presents the list of CAs that are recognized by the SKM. These
includewellknownCAs,suchasVeriSign,Thawte,andothers. Youcanaddandremovecommon
CAsasnecessary.
The CA Certicate List section is shown here.
Secure Key Manager
151
Page view 150
1 2 ... 146 147 148 149 150 151 152 153 154 155 156 ... 326 327

Comments to this Manuals

No comments