VMware VCM 5.3 - TRANSPORT LAYER SECURITY IMPLEMENTATION Betriebsanweisung Seite 17

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 258
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 16
To be valid, a Collector certificate must be:
n
Located in the local machine personal certificate store.
n
Valid for Server Authentication. If any Enhanced Key Usage extension or property is present, it must
include the Server Authentication OID 1.3.6.1.5.5.7.3.1. If the Key Usage extension is present, it must
include DIGITAL_SIGNATURE.
n
Active, and not expired.
Alternatively, Installation Manager can generate the Collector and Enterprise certificates for you; select the
Generate option during installation.
NOTE If you will install more than one Collector that will communicate with the same Agent(s), or plan
to replace/renew your certificates later, special considerations are required to generate and select
certificates in VCM Installation Manager. For details about VCM and Transport Layer Security (TLS), see
Transport Layer Security Implementation for VCM.
Server Authentication
Server Authentication is a method of authenticating the server to the client. VCM supports server
authentication. In VCM environments where TLS is employed, VCM Agents verify the identity of the
Collector(s) through the use and verification of certificates (over HTTP).
Typically, the server authenticates a client/user by requiring information such as a user name and
password. When server authentication is used, the client/user verifies that the server is valid. To
accomplish this verification using TLS, the server provides a certificate issued by a trusted authority, such
as Verisign®. If your client web browser has the Verisign® Certified Authority certificate in its trusted
store, it can trust that the server is actually the Web site you access.
TLS uses certificates managed by a public key infrastructure (PKI) to guarantee the identity of servers and
clients. A certificate is a package containing a public key and information that identifies the owner and
source of that key, and one or more certifications (signatures) to verify that the package is authentic. To
sign a certificate, an issuer adds information about itself to the information already in the certificate
request. The public key and identifying information are hashed and signed using the private key of the
issuer’s certificate.
Certificates are defined by the X.509 RFC standard, which includes fields that form a contract between the
creator and consumer. The Enhanced Key Usage extension specifies the use for which the certificate is
valid, including Server Authentication.
Enterprise and Collector Certificates
An Enterprise Certificate and one or more Collector Certificates enable secure HTTP Collector-Agent
communication in VCM. The Enterprise Certificate enables VCM to operate in a multi-Collector
environment. Agents have the Enterprise Certificate in their trusted certificate stores, which they use
implicitly to validate any certificate issued by the Enterprise Certificate. All Collector Certificates are
expected to be issued by the Enterprise Certificate, which is critical in environments where a single Agent
is shared between two collectors.
Server Authentication is required to establish a TLS connection with an Agent. All Collectors should have a
common Enterprise Certificate. Each Collector Certificate is issued by the Enterprise Certificate, and is
capable of Server Authentication.
Preparing for Installation
VMware, Inc. 17
Seitenansicht 16
1 2 ... 12 13 14 15 16 17 18 19 20 21 22 ... 257 258

Kommentare zu diesen Handbüchern

Keine Kommentare

TOA Electronics CST38MH manuály

Uživatelské manuály a uživatelské příručky pro Krby TOA Electronics CST38MH.
Poskytujeme 1 manuály pdf TOA Electronics CST38MH ke stažení zdarma podle typů dokumentů: Uživatelský manuál






Další produkty a příručky pro Krby TOA Electronics

Modely Typ Dokumentu
VFST-CMN-2 Uživatelský manuál   TOA Electronics VFST-CMN-2 User's Manual, 24 stránky
P0055-DRG Uživatelský manuál    TOA Electronics P0055-DRG User's Manual, 20 stránky
CST-38 Uživatelský manuál   TOA Electronics CST-38 User's Manual, 24 stránky
SLDVT-35 Uživatelský manuál    TOA Electronics SLDVT-35 User's Manual, 24 stránky
TM-4500 Uživatelský manuál   TOA Electronics TM-4500 User's Manual, 20 stránky
RD-36 Uživatelský manuál   TOA Electronics RD-36 User's Manual, 20 stránky
SSDVT-4035CNM Uživatelský manuál   TOA Electronics SSDVT-4035CNM User's Manual, 40 stránky
CR-3835L Uživatelský manuál   TOA Electronics CR-3835L User's Manual, 24 stránky
SSDV-3328 Uživatelský manuál   TOA Electronics SSDV-3328 User's Manual, 36 stránky
BR-42 Uživatelský manuál   TOA Electronics BR-42 User's Manual, 20 stránky
BCF-3885 Uživatelský manuál   TOA Electronics BCF-3885 User's Manual, 8 stránky