Specify the Server Certificate Parameters

You can enter the following certificate parameters.

Subject Name
By default, this field displays the fully typed name of your NDS® tree.

Note: You can edit this field, but changing the subject's name to something other than the object's fully typed name can cause certificate lookup problems for some software.

Alternative Name
This field only appears if the Subject name field contains a DNS name. Check the check box if you want to include the server's fully typed NDS name as an alternative name.

Add Name
Click Add Name to specify one or more subject alternative names. For example, you can specify an IP address as an subject alternative name.

Signature Algorithm
Use the drop-down list to select the signature algorithm that the CA will use to sign the public key certificate. All options are RSA* encryption algorithms. RSA encryption is a common public key algorithm.

RSA Encryption with MD2 Hash
MD2 (Message Digest 2) is recommended for compatibility with older or external PKI systems only.
MD2 has been shown to produce hash collisions. Collisions occur when two different messages hash to the same value. Using MD2 is therefore discouraged.
RSA Encryption with MD5 Hash
MD5 (Message Digest 5) is recommended for compatibility with older or external PKI systems only.
MD5 has been shown to produce pseudo-collisions on the hashed values. Using MD5 is therefore discouraged.
RSA Encryption with SHA-1 Hash
SHA-1 (Secure Hash Algorithm version 1) is a message digest function proposed by the National Institute of Standards and Technology (NIST). Novell® recommends SHA-1 for all generated public key certificates.

A trademark symbol (®, TM, etc.) denotes a Novell trademark. An asterisk (*) denotes a third-party trademark. For information on trademarks, see Legal Notices.