1.3. What Is in This Guide

1.3. What Is in This Guide

This guide contains the following topics:

Chapter 2, Create and Remove Instance Tools Describes the tools used to create and remove subsystem instances.
Chapter 3, Silent Installation Describes the tool used for a silent instance creation.
Chapter 4, TokenInfo Describes the utility which can be used to identify tokens on a machine, which shows whether the Certificate System can detect those tokens to use for a subsystem.
Chapter 5, SSLGet Describes a tool used by the Certificate System to help configure and use security domains.
Chapter 6, AuditVerify Describes how to use the tool used to verify signed audit logs.
Chapter 7, PIN Generator Describes how to use the tool for generating unique PINs for end users and for populating their directory entries with PINs.
Chapter 8, ASCII to Binary Describes how to use the tool for converting ASCII data to its binary equivalent.
Chapter 9, Binary to ASCII Describes how to use the tool for converting binary data to its ASCII equivalent.
Chapter 10, Pretty Print Certificate Describes how to use the tool for printing or viewing the contents of a certificate stored as ASCII base-64 encoded data in a human-readable form.
Chapter 11, Pretty Print CRL Describes how to use the tool for printing or viewing the contents of a CRL stored as ASCII base-64 encoded data in a human-readable form.
Chapter 12, TKS Tool Describes how to manipulate symmetric keys, including keys stored on tokens, the TKS master key, and related keys and databases.
Chapter 13, CMC Request Describes how to construct a Certificate Management Messages over Cryptographic Message Syntax (CMC) request.
Chapter 14, CMC Enrollment Describes how to sign a CMC certificate enrollment request with an agent's certificate.
Chapter 15, CMC Response Describes how to parse a CMC response.
Chapter 16, CMC Revocation Describes how to sign a CMC revocation request with an agent's certificate.
Chapter 17, CRMF Pop Request Describes how to generate Certificate Request Message Format (CRMF) requests with proof of possession (POP).
Chapter 18, Extension Joiner Describes how to use the tool for joining MIME-64 encoded formats of certificate extensions to create a single blob.
Chapter 19, Key Usage Extension Describes how to generate a distinguished encoding rules (DER)-encoded Extended Key Usage extension.
Chapter 20, Issuer Alternative Name Extension Describes how to generate an Issuer Alternative Name extension in base-64 encoding.
Chapter 21, Subject Alternative Name Extension Describes how to generate a Subject Alternative Name extension in base-64 encoding.
Chapter 22, HTTP Client Describes how to communicate with any HTTP/HTTPS server.
Chapter 23, OCSP Request Describes how to verify certificate status by submitting Online Certificate Status Protocol (OCSP) requests to an instance of an OCSP subsystem.
Chapter 24, PKCS #10 Client Describes how to generate a Public-Key Cryptography Standards (PKCS) #10 enrollment request.
Chapter 25, Bulk Issuance Tool Describes how to send either a KEYGEN or CRMF enrollment request to the bulk issuance interface to create certificates automatically.
Chapter 26, Revocation Automation Utility Describes how to automate user management scripts to revoke certificates.

Table 1.1. List of Contents