Create a certificate type for the administrator profile that CA Gateway will use to connect and perform operations with Entrust Certificate Authority.
To create a certificate type for the administrator profile
- Export the certificate specifications from the Entrust Certificate Authority:
- Log in to Entrust Certificate Authority Administration for the CA.
- Select File > Certificate Specifications > Export.
- Save the file to a location on the computer.
- Open the certificate specifications file in a text editor.
Add the following to the
[Certificate Types]section:ent_cagwxap_rsa1=enterprise,CAGW Admin,CA Gateway XAP AdministratorAdd the following to the
[Extension Definitions]section:[ent_cagwxap_rsa1 Certificate Definitions]1=Dual Usage; Single key dual usage key pair Certificate Type[ent_cagwxap_rsa1 Dual Usage Extensions]keyusage=2.5.29.15,c,m,BitString,101; digitalSignature(0) and keyEncipherment(2); Encodes the entAdminServicesClients policy OID (2.16.840.1.114027.10.4)certificatepolicies=2.5.29.32,n,o,DER,300D300B06096086480186FA6B0A04- Save and close the file.
- Import the certificate specifications back into the Entrust Certificate Authority:
- Log in to Entrust Certificate Authority Administration for the CA.
- Selecting File > Certificate Specifications > Import.
- Select the file you edited earlier.