Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

CA.newOCSPStatementForSerial_ECDSA <serial number in decimal of the new ECDSA intermediate certificate>

The result of this set of commands are the files needed for CA operation:

TechnologyCertificateContains Private Key?CRLOCSP
RSAROOT-RSA/cacert.pem
ROOT-RSA/crl.der // ROOT-RSA/crl.pemROOT-RSA/OCSP/<serial>.response.der

ROOT-RSA/certs/N.N./cert-rsa.pemX

ECDSAROOT-ECDSA/cacert.pem
ROOT-ECDSA/crl.der // ROOT-ECDSA/crl.pemROOT-RSA/OCSP/<serial>.response.der

ROOT-ECDSA/certs/N.N./cert-ecdsa.pemX

All of these files, but no others, are copied out of the CA environment for further use in operations (e.g. onto a USB stick).

Specific Instructions to make CAT instance a Managed IdP one

...