|
Oracle® Application Server Certificate Authority Administrator's Guide
10g (9.0.4) Part No. B10663-02 |
|
|
|
|
Oracle Application Server Certificate Authority is compliant with the X.509 V3 and IETF's PKIX standards, and supports the following extensions:
OCA's CA certificates contain the following extensions
Basic Constraints Extension: Critical
KeyUsage Extension: Critical
The following bits are set on:
Digital Signature
Key Cert Sign
CRL Sign
Non-Repudiation
OCA's End-Entity SSL/Encryption Certificates
Key Usage Extension: Non-Critical
The following bits set on:
Digital Signature
Key Encipherment
Key Agreement
Non-Repudiation
Code signing certificates
Key Usage Extension: Non-Critical
The following bits are set on:
+ Digital Signature
SMIME-Signing Certificates
Key Usage Extension: Non-Critical
The following bits set on:
Digital Signature
Data Encipherment
Non-Repudiation