13.0

Table Of Contents
Chapter 6: Configuring and using the Roaming feature and Roaming User Profiles
Certificate Store
Thenameofthecertificatestorefortheclientcertificateonthelocalcomputer:
Thestoragelocationiscalledthecertificatestore.Acertificatestorewilloftenhave
numerouscertificates,possiblyissuedfromanumberofadifferentcertificationauthorities:
n MY:Acertificatestoreholdingpersonalcertificateswiththeirassociatedprivatekeys.
n CA:AcertificatestoreholdingCertifyingAuthority(CA)certificates.
n ROOT:AcertificatestoreholdingROOTcertificates.
n SPC:AcertificatestoreholdingSoftwarePublisherCertificate(SPC)certificates.
n Other:AnyotherCertificateStorenotlistedabove.
Notes:
n IfyouselectPFX file fortheCertificate Store Type,fortheCertificate Store
selectOther andenterthenameofthefileintheassociatedtextboxbelowit.
n IfyouselectPFX Blob fortheCertificate Store Type,fortheCertificate Store
selectOther andenterthebinarycontentsofaPFXfile(forexample,thePKCS12)in
theassociatedtextboxbelowit.
n IfyouareusingOpenSSL,fortheCertificate Store selectOther andenterthe
nameofthefilecontainingacertificateandaprivatekeyintheassociatedtextbox.
Certificate Store Password
ThepasswordfortheCertificate Store onthelocalcomputerifoneisrequired.
Open SSL
SelectUsing OpenSSL iftheHTTPSserverusesOpenSSL asaCertificateAuthority.
OpenSSLisafreenon-commercialimplementationofSSL.
WhenyouselectUsing OpenSSL,youmustprovide:
n Cipher List:AstringthatcontrolsthecipherstobeusedbySSL.Thecipherlist
consistsofoneormorecipherstringsseparatedbycolons.
n Certificate Authority File:Nameofthefilecontainingthelistofcertificate
authorities(CAs)trustedbyyourapplication.Thefilesetbythispropertyshould
containalistofCAcertificatesinPEMformat.
n CA Directory:PathtoadirectorycontainingCAcertificates.Thepathsetbythis
propertyshouldpointtoadirectorycontainingCAcertificatesinPEMformat.
General
Usethissectiontoenable/disablethesupportedsecurityprotocolsontheHTTPSserver.
n TLS1:Version1oftheTransportLayerSecurity(TLS)protocol.
n SSL3:Version3oftheSecureSocketsLayer(SSL)protocol.
n SSL2:Version2oftheSecureSocketsLayer(SSL)protocol.
n PCT1:Version1ofthePrivateCommunicationsTransport(PCT)protocol.
Notes:
n AlthoughanumberofsitesstillsupportSSL2,Nuancerecommendsthatyoudisable
itbecauseofpotentialsecurityvulnerabilities.
188