User guide
Chapter 2: Environment Setup (SSO Administrators)
2-70
Protocol Version
Select 'SSL 2.0' and 'SSL 3.0'.
Verify Client Certificate?
Select 'Yes (Authenticate when client certificate is presented)'.
Encryption Method
When necessary, change the method. Refer to the Operator’s Guide.
CA Certificate Nickname
When necessary, change the nickname. Refer to the Operator’s Guide.
Preparations for Confirming Validity of Certificate Authentication
The validity of a certificate can be confirmed using the certificate revocation list (CRL) at certificate
authentication. The following explains the preparations for certificate validity confirmation.
SSL Communication using Authentication Server
If using SSL communication on the authentication server, perform the following steps.
1. Registering the Certificate of the CRL-issuing Authority (*1)
2. Registering CRL
*1 Register the CRL that was issued from a certificate authority that was not specified in the site
certificate described in Preparations for SSL Communication.
SSL Communication using SSL Accelerator or Application Gateway
When the authentication infrastructure uses SSL Accelerator or Application Gateway perform the
following describes:
1. Creating Interstage certificate environment
2. Registering the Certificate of the CRL-issuing Authority
3. Registering CRL
Creating Interstage certificate environment
Set up the Interstage certificate environment using scsmakeenv command when the Interstage
certificate environment is not set up.
For details about scsmakeenv command, refer to 'SSL Commands' in the Reference Manual (Command
Edition)