Complete Contents
Chapter 1 Introducing Netscape Console
Chapter 2 The Netscape Server Family Setup Program
Chapter 3 Using Netscape Console
Chapter 4 User and Group Administration
Chapter 5 Using SSL
Chapter 6 Delegating Administration
Chapter 7 Using SNMP to Monitor Servers
Chapter 8 Administration Server Basics
Chapter 9 Administration Server Configuration
Appendix A Distinguished Name Syntax and Attributes
Appendix B Administration Server Command Line Tools
Appendix C FORTEZZA
Appendix D Introduction to Cryptography
Appendix E Introduction to SSL
Contents Bookshelf



A
access control information
  See ACI
access log
  defined 171
  viewing 172
access permission
  for a server 134
  for a task 137
access settings 177
ACI
  name 142
  rule 136, 138
ACI Editor
  settings and options 140
  using 138
activate SSL 98
add
  administration domain 32
  pre-4.0 server 36
  right to add 141
administration domain
  adding 32
  changing user directory settings 185
  defined 128
  modifying 33
  overview 30
administration privileges
  comparison 129
Administration Server
  access settings 177
  activating SSL 179
  defined 20
  delegated administration 128
  directory settings 181
  enabling SSL 179
  encryptions settings 179
  installation of 24
  logging options 171
  network settings 175
  single instance per server root 39
  SNMP master agent 150
  starting 169
  stopping 171
  user directory settings 183
Administration Server Administrator
  privileges 129
administrative privileges
  overview 127
adminstrative privileges
  defined 128
algorithm 233
alias 59, 94
authentication
  certificate 241, 243
  client 240
  form signing 249
  password-based 241
  server 240
  user 184

B
bind rules 136

C
CA 254
  certificate 246
  defined 239
  FORTEZZA card 228
  hierarchies 254
  root CA 255
CAW 227
certificate 109
  and LDAP Directory 262
  backing up 94
  CA certificate 246
  certificate-based authentication 241
  chains 255
  client 103-109, 245
  contents 250
  example of 251
  how certificates are used 243
  issuing 261
  object-signing 246
  renewing or revoking 263
  S/MIME 246
  server 246
  server certificate 87
  server certificate chain 87
  server certificate request 88-93
  trusted CA certificate 87
  types of 245
  verifying a certificate chain 260
Certificate Authority 86
  See CA.
  trusted 254
  trusted CA certificate 87
Certificate Authority Workstation 227
certificate-based authentication
  how it works 243
certificate database 83, 86
certificate group 64
Certificate Revocation List 229
  See CRL
Certificate Setup Wizard 86
certmap.conf file 103-109
changing user directory settings 186
ciphers, SSL 84-85
  choosing 84
  defined 233
  preferences 100
CKL 101, 229
client
  authentication 240
  SSL certificates 103, 245
clone a server 37
community string 160
Compare 141
Compromised Key List 229
Configuration Administrator
  Configuration Administrators group 132
  defined 128
  privileges 129
  setting access permissions 134
configuration directory 17
  defined 181
  specifying 181
configuration directory, merging 40
construct LDAP URL 63
create
  administration domain 33
  certificate group 64
  dynamic group 62
  organizational unit 59
  server instance 37
  static group 60
  user 66
CRL
  defined 229
  managing 101
crypto card
  FORTEZZA 227
  how certified 228
Custom Installation mode 25
customize
  display fonts 42
  display preferences 42
  view of Netscape Console 42

D
delegated administration 128-131
Delete
  access control permission 141
Digital Signatures 82, 237
Directory Server 17-19
  authentication against 128
  configuration subtree 17
  installing 24
  interacting with 53-57
  LDAP URL 63
  mapping client certificate to 103-109
  merging two configuration directories 40
  user directory failover support 184
  user subtree 17
Directory Server Gateway 177
directory settings 181
display preferences 42
  fonts 42
  profile 45
distinguished name
  See DN.
DN
  defined 250
  overview 54
Domain Administrator
  defined 128
  privileges 129
dynamic group 62

E
edit
  password 69
  user or group directory entry 69
email, signed and encrypted 247
encryption
  defined 233
  external devices 82
  PKCS # 11 module 82
  public-key 235
  SSL overview 82
  symmetric-key 234
encryption settings 179
end user
  administration page 56
End-user page 177
error log
  defined 171
  viewing 173
Express Installation mode 25
external encryption devices 82
external token 83

F
failover support,directory 184
fonts, customizing 42
form signing 249
FORTEZZA
  and PKCS # 11 module 82
  choosing 89
  defined 227
  enabling 229
  FORTEZZA card 83
  how it works 227

G
group 60-66
  certificate group 64
  dynamic group 62
  static group 60

I
install 24
  Install.htm 24
  installation modes 24
  Netscape Console 26
  SSL certificate 87, 94
internal token 83

K
key 233
key-pair 86
  Certificate Setup Wizard 86
  overview 83
key recovery 262

L
language, preferred 68
LDAP URL 63
license, tracking 68
Litronic cryptographic module 82
logging in to Netscape Console 29
logging options 171

M
master agent 150
members, adding to static group 61
merge configuration 40
Merge Configuration Directory utility 40
migrate a server 37

N
navigation tree
  customizing 42
  overview 30
Netscape Console 21
  installing by itself 26
  logging in 29
network settings 175

O
object signing 250
organizational unit
  creating 59
  defined 58
overview 30

P
password
  editing 69
  for Trust Database 101
password-based authentication 241
permission
  permssions used in ACIs 135
permission, access 134
PKCS # 11 module 82
  setting up 83
pre-4.0 server 35-38
  adding 35
preferences
  display 42
preferred language 68
private key 235
public key
  defined 235
  infrastructure 260
  management 262
public-key
  cryptography 232
Public-Key Encryption 82

R
Read
  access control permission 141
recover a key 262
Registration Authority 264
remove
  server instance 39
  user, group, or organizational unit 69
renew certificate 263
request for server certificate 88-93
resources
  access to 132
  defined 30
revoke a certificate 263
rights, access control 141
rule, ACI 138
rules 136

S
S/MIME certificate 246
search
  changing the search directory 56
  for a user or group 54
  Search access control permission 141
Secure Sockets Layer protocol
  See SSL
self-signed certificate 255
Selfwrite 141
server
  authentication 240
  certificate 89
  changing user directory settings 188
  task 137
server, Netscape
  certificate 88-93
  cloning 37
  creating new instance of 37
  installing 24
  migrating to 4.0 37
  opening 32
  remove instance 39
  uninstalling 40
Server Administrator 128
  privileges 129
server certificate 87, 246
server certificate chain 94
server certificate request 88-93
server group 30, 128, 186
  defined 20
  providing access to 128
server instance
  creating 39
  removing 39
Setup Program 23
single sign-on 248
SNMP
  community string 160
  defined 150-151
  enabling master agent 157
  enabling subagent 162
  how it works 151-153
  master agent 150
  native daemon 156
  proxy agent 155
  setting up 153-154
  subagent 150
  trap destinations 162
SSL client 103-109
SSL protocol 82-86
  ciphers 95
  client certificates 245
  external token 83
  internal token 83
  options 86
  server certificate chain 94
  slots and tokens 83
  token 95
static group
  creating 60
  defined 60
subagent 150
subagent, SNMP 162

T
target 142
  ACI 135
task 137
TCP/IP 232
test LDAP URL 63
token 89, 95
token, for SSL 88
tokens, SSL protocol 83
topology, Netscape 128
track user licenses 68
trap, SNMP 162
Trust Database 89
  password 101
trusted CA
  defined 254
Typical Installation mode 25

U
uninstall a Netscape server 40
user
  create 66
  preferred language 68
user directory 17
  defined 183
  failover support 184
  settings 183

V
view, customized 42

W
Write
  access control permission 141
 

© Copyright 1998 Netscape Communications Corporation