User guide
Using the Advanced Method to Configure Trust 85
Chapter 9: Managing Trusted Servers
2. For Server or intermediate CA name, enter the name (or final elements of a
name) that you want to match. This field is not required if you select
Regardless of its name. The form of the name depends on your choice of
Server or intermediate CA name type.
3. For the certificate authority Server or intermediate CA name type, indicate
how the name is interpreted and where in the certificate the name is found.
Select one of the following:
Select Domain Name in Subject Alternative Name or Common Name if
the domain name (for example, acme.com) is found in the Subject
Alternative Name field in the certificate or, if that is not present, the
Common Name within the Subject field of the certificate. This is the most
typical choice.
Select Domain Name in Subject Alternative Name if the domain name is
found in the Subject Alternative Name field in the certificate. This is
similar to but more restrictive than the previous choice.
Select Subject Name if the name is an X.500 name and is found in the
Subject field in the certificate. If you enter a full or partial Subject name, it
must be in X.500 form. It matches any certificate Subject name that is
equal or subordinate to it.
For example, if you enter OU=acme.com, C=US, any of the following
subject names match:
O=sales, OU=acme.com, C=US
CN=george, O=sales, OU=acme.com, C=US
4. For Maximum number of intermediate certificates, set the number of
certificates that might appear in the chain between this node and the node
directly above this node. Select a number between 0 and 5 or Unlimited:
If you choose 0, the certificate that matches this node must have been
signed using the certificate that matches the node above this node.
If you choose 1, the certificate that matches this node might have been
signed by the certificate that matches the node above or by a certificate
that in turn has been signed by the certificate that matches the node
above.
If you choose a number between 2 and 5, that number of certificates might
appear in the chain between the certificate that matches this node and the
one that matches the node above.
If you choose Unlimited, any number of certificates might appear in the
chain between the certificate that matches this node and the one that
matches the node above.
5. Click OK.
NOTE: If you enter text withs commas, enclose them with single quotation marks.