Sun ONE Portal Server, Secure Remote Access 6.2 ºÞ²zû«ü«n |
²Ä 7 ³¹
ÃҮѥ»³¹·|¤¶²ÐÃҮѺ޲z¨Ã¸ÑÄÀ¦p¦ó¦w¸Ë¦ÛñªºÃҮѻP¨Ó¦Û»{ÃÒ¾÷ºc (CA) ªºÃҮѡC
¥»³¹²[»\¤U¦C¥DÃD¡G
SSL ÃҮѷ§zSun ONE Portal Server, Secure Remote Access ³nÅé´£¨Ñ¥HÃҮѬ°°ò¦ªº»·ºÝ¨Ï¥ÎªÌ»{ÃÒ¡CSecure Remote Access ¨Ï¥Î¦w¥þ®M±µ¼h (SSL) ¥i¹ê²{¦w¥þ³q°T¡C¦¹ SSL ³q°T¨ó©w¥i¹ê²{¨â³¡¾÷¾¹¤§¶¡ªº¦w¥þ³q°T¡C
SSL ÃҮѨϥΤ½¶}ª÷Æ_»P¨p¤Hª÷Æ_¹ï´£¨Ñ¥[±K»P¸Ñ±K¥\¯à¡C
¦³¨âºØÃþ«¬ªºÃҮѡG
¨Ì¹w³]¡A·í±z¦w¸Ë¡u¹h¹D¡v®É¡A¨t²Î·|²£¥Í¨Ã¦w¸Ë¦ÛñÃҮѡC
¦w¸Ë¤§«á¡A±z¥i¥HÀH®É²£¥Í¡BÀò±o©Î¨ú¥NÃҮѡC
Secure Remote Access ¦P®É¤ä´©¨Ï¥ÎÓ¤H¼Æ¦ìÃÒ®Ñ (PDC) ªº¥Î¤áºÝ»{ÃÒ¡CPDC ¬O¤@ºØ¾÷¨î¡A¥i³z¹L SSL ¥Î¤áºÝ»{ÃÒ¶i¦æ¨Ï¥ÎªÌ»{ÃÒ¡C¦³¤F SSL ¥Î¤áºÝ»{ÃÒ¡ASSL °T¸¹¥æ´«¼Ò¦¡«K·|©ó¡u¹h¹D¡vµ²§ô¡C¹h¹D·|Â^¨ú¨Ï¥ÎªÌªº PDC ¨Ã±N¥¦¶Ç°e¨ì»{ÃÒ¦øªA¾¹¡C¦Ó¦¹¦øªA¾¹·|¨Ï¥Î PDC »{ÃҨϥΪ̡CYn°t¸m PDC »P»{ÃÒÃì±µ¡A½Ð°Ñ¾\¡u¨Ï¥Î»{ÃÒÃì±µ¡v¡C
Secure Remote Access ´£¨Ñ¦W¬° certadmin ªº¤u¨ã¡A¥iÅý±z¥Î¨ÓºÞ²z SSL ÃҮѡC½Ð°Ñ¾\¡ucertadmin µ{§ÇÀÉ¡v¡C
ÃÒ®ÑÀÉ®×»PÃҮѬÛÃöªºÀɮצì©ó /etc/opt/SUNWps/cert/default/gateway-profile-name¡C¦¹¥Ø¿ý¨Ì¹w³]¥]§t 5 ÓÀɮסC
ªí 7-1 ¦C¥X³o¨ÇÀɮפΨ仡©ú¡C²Ä¤@Äæ¦C¥XÃÒ®ÑÀɮצWºÙ¡B²Ä¤GÄæ«ü©wÀÉ®×Ãþ«¬¡A¦Ó²Ä¤TÄæ«h¬°ÀÉ®×»¡©ú¡C
ÃҮѫH¥ôÄÝ©ÊÃҮѪº«H¥ôÄݩʪí¥Ü¡G
¨CºØÃҮѦ³¤TºØ¥i¯àªº«H¥ôºØÃþ¡Aªí¹F¶¶§Ç¬°¡G¡uSSL¡B¹q¤l¶l¥ó©Mª«¥óñ¸p¡v¡C¹ï©ó¹h¹D¤¸¥ó¦Ó¨¥¡A¶È²Ä¤@ÓºØÃþ¦³¥Î¡C¦b¨CÓºØÃþ¦ì¸m¡A¥i¥H¨Ï¥Î¹s©Î¨ä¥L«H¥ôÄݩʥN½X¡C
ºØÃþªºÄݩʥN½X¥Ñ³r¸¹¹j¶}¡A¦Ó¾ãÓÄݩʶ°«h¬O¥Ñ¤Þ¸¹Àô¶¡C¨Ò¦p¡A¹h¹D¦w¸Ë´Á¶¡²£¥Í¨Ã¦w¸Ëªº¦ÛñÃҮѼаO¬° "u,u,u"¡Aªí¥Ü¦¹¬O¦øªA¾¹ÃÒ®Ñ (¨Ï¥ÎªÌ»{ÃÒ) ¦Ó¤£¬O®Ú CA ÃҮѡC
ªí 7-2 ¦C¥X¥i¯àªºÄÝ©ÊÈ»P¨CÓȪº·N¸q¡C²Ä¤@Äæ¦C¥XÄݩʡA²Ä¤GÄæ«h»¡©úÄݩʡC
CA «H¥ôÄÝ©ÊÃÒ®Ñ¸ê®Æ®w¤¤¥]§t²³©Ò¬Òª¾ªº¤½¶} CA¡C¦³Ãöק綠¶} CA «H¥ôÄݩʪº¸ê°T¡A½Ð°Ñ¾\¡u×§ïÃҮѪº«H¥ôÄݩʡv¡C
ªí 7-3 ¦C¥X²³¦h¦@¥Îªº»{ÃÒ¾÷ºc¤Î¨ä«H¥ôÄݩʡC²Ä¤@Äæ¦C¥X»{ÃÒ¾÷ºc¡A¦Ó²Ä¤GÄæ«h¦C¥X¸Ó CA ªº«H¥ôÄݩʡC
certadmin µ{§ÇÀɱz¥i¥H¨Ï¥Î certadmin µ{§ÇÀɰõ¦æ¤U¦CÃҮѺ޲z¤u§@¡G
²£¥Í¦ÛñÃҮѱz»Ýn¬°¨CÓ¦øªA¾¹©M¹h¹D¤¸¥ó¤§¶¡ªº SSL ³q°T²£¥ÍÃҮѡC
¦w¸Ë¤§«áYn²£¥Í¦ÛñÃÒ®Ñ
- ¥H root ¨¥÷¡A¦b±z·Qn²£¥ÍÃҮѪº¹h¹D¾÷¾¹¤W°õ¦æ certadmin µ{§ÇÀÉ¡G
portal-server-install-root/SUNWps/bin/certadmin -n gateway-profile-name
¨t²Î«K·|Åã¥ÜÃҮѺ޲z¥\¯àªí¡C
- ¦bÃҮѺ޲z¥\¯àªí¤W¿ï¾Ü¿ï¶µ 1¡C
ÃҮѺ޲zµ{§ÇÀÉ·|¸ß°Ý±z¬O§_·Qn«O¯d²{¦³ªº¸ê®Æ®wÀɮסC
- ½Ð¿é¤J²Õ´¯S©wªº¸ê°T¡B°O¸¹¦WºÙ©MÃҮѦWºÙ¡C
¦¹¥D¾÷ªº§¹¾ã©w DNS ¦WºÙ¬O¤°»ò¡H[host_name.domain_name]
±zªºªÀ¹Î²Õ´¦WºÙ¡]¦p¡G¤½¥q¡^¬O¤°»ò¡H[]
±zªº²Õ´³æ¦ì¦WºÙ¡]¦p¡G³¡ªù¡^¬O¤°»ò¡H[]
±z©Ò¦bªº«°¥«©Î¦a°Ïªº¦WºÙ¬O¤°»ò¡H []
±z©Ò¦bªº¦{©Î¬Ù¥÷¦WºÙ¡]½Ð¤Å¨Ï¥ÎÁY¼g¡^¬O¤°»ò¡H []
¦¹³æ¦ìªºÂù¦r¥À°ê½X¬O¤°»ò¡H []
¶È·í±z¤£¨Ï¥Î¹w³]ªº¤º³¡¡]³nÅé¡^¥[±K¼Ò²Õ®É¤~»Ýn¨Ï¥Î°O¸¹¦WºÙ¡A¨Ò¦p¡A¦pªG±z·Qn¨Ï¥Î ±K½X¥d®É (°O¸¹¦WºÙ¥i¥H¨Ï¥Î modutil -dbdir /etc/opt/SUNWps/cert/gateway-profile-name –list ¦C¥Ü)¡F§_«h¡A½Ð«ö¤@¤U¤U ¦Cªº¡u¶Ç¦^¡vÁä¡C
½Ð¿é¤J°O¸¹¦WºÙ¡C []
¬°¦¹ÃҮѿé¤J·Q¨Ï¥Îªº¦WºÙ¡H
½Ð¿é¤JÃҮѪº¦³®Ä´Á¶¡ (¥H¤ëp) [6]
A self-signed certificate is generated and the prompt returns. (¦Ûñ ÃҮѱN·|²£¥Í¨Ã¶Ç¦^´£¥Ü¡C)
°O¸¹¦WºÙ (¹w³]ªÅ¥Õ) ©MÃҮѦWºÙÀx¦s©ó .nickname Àɮפ¤¡A¸ô®|¬O /etc/opt/SUNWps/certgateway-profile-name¡C
- «·s±Ò°ÊÃҮѹh¹D¤~·|¥Í®Ä¡G
gateway-install-root/SUNWps/bin/gateway -n new gateway-profile-name start
²£¥ÍÃÒ®Ññ¸pn¨D (CSR)¥i¥H±q CA q¨îÃҮѤ§«e¡A±z»Ýn²£¥Í¥]§t CA ©Ò»Ýn¸ê°TªºÃÒ®Ññ¸pn¨D¡C
Yn²£¥Í CSR
- ¥H¶W¯Å¨Ï¥ÎªÌ¨¥÷°õ¦æ certadmin µ{§ÇÀÉ¡G
portal-server-install-root/SUNWps/bin/certadmin -n gateway-profile-name
¨t²Î«K·|Åã¥ÜÃҮѺ޲z¥\¯àªí¡C
1) ²£¥Í¦ÛñÃÒ®Ñ
2) ²£¥ÍÃÒ®Ññ¸pn¨D (CSR)
3) ¥[¤J Root CA ÃÒ®Ñ
4) ¦w¸Ë¨Ó¦Û»{ÃÒ¾÷ºc (CA) ªºÃÒ®Ñ
5) §R°£ÃÒ®Ñ
6) ×§ïÃҮѪº«H¥ôÄÝ©Ê (¨Ò¦p PDC ªº«H¥ôÄÝ©Ê)
7) ¦C¥Ü Root CA ÃÒ®Ñ
8) ¦C¥Ü©Ò¦³ÃÒ®Ñ
9) ¦C¦LÃҮѤº®e
10) °h¥X
¿ï¾Ü¡G [10] 2
- ¦bÃҮѺ޲z¥\¯àªí¤W¿ï¾Ü¿ï¶µ 2¡C
µ{§ÇÀÉ´£¥Ü±z¿é¤J²Õ´¯S©wªº¸ê°T¡B°O¸¹¦WºÙ©Mºô¸ôºÞ²zû¹q¤l¶l¥ó¤Î¹q¸Ü¸¹½X¡C
½Ð«ü©w¥D¾÷ªº§¹¾ã¦X®æ DNS ¦WºÙ¡C
¦¹¥D¾÷ªº§¹¾ã©w DNS ¦WºÙ¬O¤°»ò¡H[snape.sesta.com]
±zªºªÀ¹Î²Õ´¦WºÙ¡]¦p¡G¤½¥q¡^¬O¤°»ò¡H[]
±zªº²Õ´³æ¦ì¦WºÙ¡]¦p¡G³¡ªù¡^¬O¤°»ò¡H[]
±z©Ò¦bªº«°¥«©Î¦a°Ïªº¦WºÙ¬O¤°»ò¡H []
±z©Ò¦bªº¦{©Î¬Ù¥÷¦WºÙ¡]½Ð¤Å¨Ï¥ÎÁY¼g¡^¬O¤°»ò¡H []
¦¹³æ¦ìªºÂù¦r¥À°ê½X¬O¤°»ò¡H []
¶È·í±z¤£¨Ï¥Î¹w³]ªº¤º³¡¡]³nÅé¡^¥[±K¼Ò²Õ®É¤~»Ýn¨Ï¥Î°O¸¹¦WºÙ¡A¨Ò¦p¡A¦pªG±z·Qn¨Ï¥Î±K ½X¥d®É (°O¸¹¦WºÙ¥i¥H¨Ï¥Î modutil -dbdir /etc/opt/SUNWps/cert -list ¦C¥Ü)¡F §_«h¡A½Ð«ö¤@¤U¤U¦Cªº¡u¶Ç¦^¡vÁä¡C
½Ð¿é¤J°O¸¹¦WºÙ []
²{¦b½Ð¿é¤J¥»¾÷¾¹¡]±N¬°¨äÃҮѪº¾÷¾¹¡^ºô¯¸ºÞ²zûªº³¡¥÷Ápµ¸¸ê°T¡C
¦¹¦øªA¾¹ºÞ²zû/ºô¯¸ºÞ²zûªº¹q¤l¶l¥ó¦ì§}¬O¤°»ò¡H[]
¦¹¦øªA¾¹ºÞ²zû/ºô¯¸ºÞ²zûªº¹q¸Ü¸¹½X¬O¤°»ò¡H []
- ¿é¤J©Ò¦³»Ýnªº¸ê°T¡C
CSR ·|²£¥Í¨ÃÀx¦s©ó portal-server-install-root/SUNWps/bin/csr.hostname.datetimestamp Àɮפ¤¡CCSR ¦P®É·|¦C¦L©ó¿Ã¹õ¤W¡C·í±z±q CA q¨îÃҮѮɡA¥i¥Hª½±µ½Æ»s¨Ã¶K¤W CSR
·s¼W®Ú CA ÃÒ®ÑY¥Î¤áºÝ¯¸¥x´£¥æªºªºÃҮѥѹh¹DÃÒ®Ñ¸ê®Æ®w¤¤¤£¥]§tªº CA ©Òñ¸p¡A«h SSL °T¸¹¥æ´«¼Ò¦¡±N·|¥¢±Ñ¡C
YnÁ×§K³oºØ±¡ªp¡A±z»Ýn·s¼W®Ú CA ÃҮѨìÃÒ®Ñ¸ê®Æ®w¡C³o¶µ°Ê§@¥i¥H½T«O CA Åܦ¨¹h¹D©Òª¾ªº CA¡C
ÂsÄý¦Ü CA ªººô¯¸¨ÃÀò±o¦¹ CA ªº®ÚÃҮѡC·í±z¨Ï¥Î certadmin µ{§ÇÀɮɡA½Ð«ü©w®Ú CA ÃҮѪºÀɮצWºÙ©M¸ô®|¡C
Yn·s¼W®Ú CA ÃÒ®Ñ
- ¥H¶W¯Å¨Ï¥ÎªÌ¨¥÷°õ¦æ certadmin µ{§ÇÀÉ¡C
portal-server-install-root/SUNWps/bin/certadmin -n gateway-profile-name
¨t²Î«K·|Åã¥ÜÃҮѺ޲z¥\¯àªí¡C
1) ²£¥Í¦ÛñÃÒ®Ñ
2) ²£¥ÍÃÒ®Ññ¸pn¨D (CSR)
3) ¥[¤J Root CA ÃÒ®Ñ
4) ¦w¸Ë¨Ó¦Û»{ÃÒ¾÷ºc (CA) ªºÃÒ®Ñ
5) §R°£ÃÒ®Ñ
6) ×§ïÃҮѪº«H¥ôÄÝ©Ê (¨Ò¦p PDC ªº«H¥ôÄÝ©Ê)
7) ¦C¥Ü Root CA ÃÒ®Ñ
8) ¦C¥Ü©Ò¦³ÃÒ®Ñ
9) ¦C¦LÃҮѤº®e
10) °h¥X
¿ï¾Ü¡G [10] 3
- ¦bÃҮѺ޲z¥\¯àªí¤W¿ï¾Ü¿ï¶µ 3¡C
- ¿é¤J¥]§t®ÚÃҮѪºÀɮצWºÙ¨Ã¿é¤JÃҮѦWºÙ¡C
®Ú CA ÃҮѱN·|·s¼W¦ÜÃÒ®Ñ¸ê®Æ®w¡C
¦w¸Ë¨Ó¦Û»{ÃÒ¾÷ºcªº SSL ÃÒ®ÑSecure Remote Access ¹h¹D¤¸¥ó¦w¸Ë´Á¶¡¡A¨Ì¹w³]¨t²Î·|«Ø¥ß¦ÛñÃҮѨæw¸Ë¡C¦b¦w¸Ë¤§«áªº¥ô¦ó®É¶¡¡A±z³£¥i¥H¦w¸Ë¥Ñ¨ÑÀ³°Ó©Î¥Ñ±z¤½¥qªº CA ´£¨Ññ¸pªº SSL ÃҮѡA¨ä¤¤³o¨Ç¨ÑÀ³°Ó·|´£¨Ñ¥¿¦¡ªº»{ÃÒ¾÷ºc (CA) ªA°È¡C
³o¶µ¤u§@¥]§tªº¤TÓ¨BÆJ¬°¡G
±q CA q¨îÃÒ®Ñ
²£¥ÍÃÒ®Ññ¸pn¨D (CSR) ¤§«á¡A±z»Ýn¨Ï¥Î CSR ±q CA q¨îÃҮѡC
Yn±q CA q¨îÃÒ®Ñ
¦w¸Ë¨Ó¦Û CA ªºÃÒ®Ñ
¨Ï¥Î certadmin µ{§ÇÀÉ¡A±N±z±q CA Àò±oªºÃҮѦw¸Ë¦b¥»¾÷¸ê®Æ®wÀɮפ¤¡A¸ô®|¬O /etc/opt/SUNWps/certgateway-profile-name¡C
Yn¦w¸Ë¨Ó¦Û CA ªºÃÒ®Ñ
- ¥H¶W¯Å¨Ï¥ÎªÌ¨¥÷°õ¦æ certadmin µ{§ÇÀÉ¡C
portal-server-install-root/SUNWps/bin/certadmin -n gateway-profile-name
¨t²Î«K·|Åã¥ÜÃҮѺ޲z¥\¯àªí¡C
1) ²£¥Í¦ÛñÃÒ®Ñ
2) ²£¥ÍÃÒ®Ññ¸pn¨D (CSR)
3) ¥[¤J Root CA ÃÒ®Ñ
4) ¦w¸Ë¨Ó¦Û»{ÃÒ¾÷ºc (CA) ªºÃÒ®Ñ
5) §R°£ÃÒ®Ñ
6) ×§ïÃҮѪº«H¥ôÄÝ©Ê (¨Ò¦p PDC ªº«H¥ôÄÝ©Ê)
7) ¦C¥Ü Root CA ÃÒ®Ñ
8) ¦C¥Ü©Ò¦³ÃÒ®Ñ
9) ¦C¦LÃҮѤº®e
10) °h¥X
¿ï¾Ü¡G [10] 4
- ¦bÃҮѺ޲z¥\¯àªí¤W¿ï¾Ü¿ï¶µ 4¡C
µ{§ÇÀÉ·|Åý±z¿é¤JÃÒ®ÑÀɮצWºÙ¡BÃҮѦWºÙ©M°O¸¹¦WºÙ¡C
- ´£¨Ñ©Ò¦³»Ýnªº¸ê°T¡C
ÃҮѱN¦w¸Ë©ó /etc/opt/SUNWps/certgateway-profile-name¡A¦Ó¥B¨t²Î·|¶Ç¦^¿Ã¹õ´£¥Ü¡C
- «·s±Ò°ÊÃҮѹh¹D¤~·|¥Í®Ä¡G
gateway-install-root/SUNWps/bin/gateway -n gateway-profile-name start
§R°£ÃҮѱz¥i¥H¨Ï¥ÎÃҮѺ޲zµ{§ÇÀɧR°£ÃҮѡC
Yn§R°£ÃÒ®Ñ
- ¥H¶W¯Å¨Ï¥ÎªÌ¨¥÷°õ¦æ certadmin µ{§ÇÀÉ¡C
¨ä¤¤ gateway-profile-name ¬O¹h¹D¹ê¨Òªº¦WºÙ¡C
¨t²Î«K·|Åã¥ÜÃҮѺ޲z¥\¯àªí¡C
1) ²£¥Í¦ÛñÃÒ®Ñ
2) ²£¥ÍÃÒ®Ññ¸pn¨D (CSR)
3) ¥[¤J Root CA ÃÒ®Ñ
4) ¦w¸Ë¨Ó¦Û»{ÃÒ¾÷ºc (CA) ªºÃÒ®Ñ
5) §R°£ÃÒ®Ñ
6) ×§ïÃҮѪº«H¥ôÄÝ©Ê (¨Ò¦p PDC ªº«H¥ôÄÝ©Ê)
7) ¦C¥Ü Root CA ÃÒ®Ñ
8) ¦C¥Ü©Ò¦³ÃÒ®Ñ
9) ¦C¦LÃҮѤº®e
10) °h¥X
¿ï¾Ü¡G [10] 5
- ¦bÃҮѺ޲z¥\¯àªí¤W¿ï¾Ü¿ï¶µ 5¡C
- ¿é¤Jn§R°£ªºÃҮѦWºÙ¡C
×§ïÃҮѪº«H¥ôÄÝ©ÊY¥Î¤áºÝ»{ÃÒ»P¹h¹D¤@°_¨Ï¥Î¡AÃҮѫH¥ôÄݩʫh»Ýn×§ï¡C¨ä¤¤¤@ӥΤáºÝ»{ÃÒ½d¨Ò¬° PDC (Ó¤H¼Æ¦ìÃÒ®Ñ)¡C®Öµo PDC ªº CA ¥²¶·¨ü¹h¹D©Ò«H¥ô¡A¨ä¤¤ CA ÃҮѪº SSL ¼Ð°O¥²¶·¬° "T"¡C
Y¹h¹D¤¸¥ó³]¬°»P HTTPS ¯¸¥x³q°T¡AHTTPS ¯¸¥x¦øªA¾¹ÃҮѪº CA ¥²¶·¨ü¹h¹D©Ò«H¥ô¡A¦Ó¥B CA ÃҮѪº SSL ¼Ð°O ¥²¶·¬° "C"¡C
Yn×§ïÃҮѪº«H¥ôÄÝ©Ê
- ¥H¶W¯Å¨Ï¥ÎªÌ¨¥÷°õ¦æ certadmin µ{§ÇÀÉ¡C
¨ä¤¤ gateway-profile-name ¬O¹h¹D¹ê¨Òªº¦WºÙ¡C
¨t²Î«K·|Åã¥ÜÃҮѺ޲z¥\¯àªí¡C
1) ²£¥Í¦ÛñÃÒ®Ñ
2) ²£¥ÍÃÒ®Ññ¸pn¨D (CSR)
3) ¥[¤J Root CA ÃÒ®Ñ
4) ¦w¸Ë¨Ó¦Û»{ÃÒ¾÷ºc (CA) ªºÃÒ®Ñ
5) §R°£ÃÒ®Ñ
6) ×§ïÃҮѪº«H¥ôÄÝ©Ê (¨Ò¦p PDC ªº«H¥ôÄÝ©Ê)
7) ¦C¥Ü Root CA ÃÒ®Ñ
8) ¦C¥Ü©Ò¦³ÃÒ®Ñ
9) ¦C¦LÃҮѤº®e
10) °h¥X
¿ï¾Ü¡G [10] 6
- ¦bÃҮѺ޲z¥\¯àªí¤W¿ï¾Ü¿ï¶µ 6¡C
- ¿é¤JÃҮѪº¦WºÙ¡C¨Ò¦p¡GThawte Personal Freemail C¡C
- ¿é¤JÃҮѪº«H¥ôÄݩʡC
¨t²Î±N·|ÅܧóÃҮѫH¥ôÄݩʡC
¦C¥Ü®Ú CA ÃҮѱz¥i¥H¨Ï¥ÎÃҮѺ޲zµ{§ÇÀÉÀ˵ø©Ò¦³®Ú CA ÃҮѡC
YnÀ˵ø®Ú CA ²M³æ
- ¥H¶W¯Å¨Ï¥ÎªÌ¨¥÷°õ¦æ certadmin µ{§ÇÀÉ¡C
¨ä¤¤ gateway-profile-name ¬O¹h¹D¹ê¨Òªº¦WºÙ¡C
¨t²Î«K·|Åã¥ÜÃҮѺ޲z¥\¯àªí¡C
1) ²£¥Í¦ÛñÃÒ®Ñ
2) ²£¥ÍÃÒ®Ññ¸pn¨D (CSR)
3) ¥[¤J Root CA ÃÒ®Ñ
4) ¦w¸Ë¨Ó¦Û»{ÃÒ¾÷ºc (CA) ªºÃÒ®Ñ
5) §R°£ÃÒ®Ñ
6) ×§ïÃҮѪº«H¥ôÄÝ©Ê (¨Ò¦p PDC ªº«H¥ôÄÝ©Ê)
7) ¦C¥Ü Root CA ÃÒ®Ñ
8) ¦C¥Ü©Ò¦³ÃÒ®Ñ
9) ¦C¦LÃҮѤº®e
10) °h¥X
¿ï¾Ü¡G [10] 7
- ¦bÃҮѺ޲z¥\¯àªí¤W¿ï¾Ü¿ï¶µ 7¡C
¨t²Î·|Åã¥Ü©Ò¦³®Ú CA ÃҮѡC
¦C¥Ü©Ò¦³ÃҮѱz¥i¥H¨Ï¥ÎÃҮѺ޲zµ{§ÇÀÉÀ˵ø©Ò¦³ÃҮѤΨä¹ïÀ³ªº«H¥ôÄݩʡC
Yn¦C¥Ü©Ò¦³ÃÒ®Ñ
- ¥H¶W¯Å¨Ï¥ÎªÌ¨¥÷°õ¦æ certadmin µ{§ÇÀÉ¡C
¨ä¤¤ gateway-profile-name ¬O¹h¹D¹ê¨Òªº¦WºÙ¡C
¨t²Î«K·|Åã¥ÜÃҮѺ޲z¥\¯àªí¡C
1) ²£¥Í¦ÛñÃÒ®Ñ
2) ²£¥ÍÃÒ®Ññ¸pn¨D (CSR)
3) ¥[¤J Root CA ÃÒ®Ñ
4) ¦w¸Ë¨Ó¦Û»{ÃÒ¾÷ºc (CA) ªºÃÒ®Ñ
5) §R°£ÃÒ®Ñ
6) ×§ïÃҮѪº«H¥ôÄÝ©Ê (¨Ò¦p PDC ªº«H¥ôÄÝ©Ê)
7) ¦C¥Ü Root CA ÃÒ®Ñ
8) ¦C¥Ü©Ò¦³ÃÒ®Ñ
9) ¦C¦LÃҮѤº®e
10) °h¥X
¿ï¾Ü¡G [10] 8
- ¦bÃҮѺ޲z¥\¯àªí¤W¿ï¾Ü¿ï¶µ 8¡C
¨t²Î·|Åã¥Ü©Ò¦³ CA ÃҮѡC
¦C¦LÃҮѱz¥i¥H¨Ï¥ÎÃҮѺ޲zµ{§ÇÀɦC¦LÃҮѡC
Yn¦C¦LÃÒ®Ñ
- ¥H¶W¯Å¨Ï¥ÎªÌ¨¥÷°õ¦æ certadmin µ{§ÇÀÉ¡C
¨ä¤¤ gateway-profile-name ¬O¹h¹D¹ê¨Òªº¦WºÙ¡C
¨t²Î«K·|Åã¥ÜÃҮѺ޲z¥\¯àªí¡C
1) ²£¥Í¦ÛñÃÒ®Ñ
2) ²£¥ÍÃÒ®Ññ¸pn¨D (CSR)
3) ¥[¤J Root CA ÃÒ®Ñ
4) ¦w¸Ë¨Ó¦Û»{ÃÒ¾÷ºc (CA) ªºÃÒ®Ñ
5) §R°£ÃÒ®Ñ
6) ×§ïÃҮѪº«H¥ôÄÝ©Ê (¨Ò¦p PDC ªº«H¥ôÄÝ©Ê)
7) ¦C¥Ü Root CA ÃÒ®Ñ
8) ¦C¥Ü©Ò¦³ÃÒ®Ñ
9) ¦C¦LÃҮѤº®e
10) °h¥X
¿ï¾Ü¡G [10] 9
- ¦bÃҮѺ޲z¥\¯àªí¤W¿ï¾Ü¿ï¶µ 9¡C
- ¿é¤JÃҮѪº¦WºÙ¡C