Today we are pleased to announce the general availability of Red Hat Certificate System 7.3. Containing a highly configurable set of software components and tools for creating, deploying and managing certificates, Red Hat Certificate System is a powerful security framework to guarantee the identity of users and ensure privacy of communications. Based on open standards for certificate management, Certificate System provides a complete, customizable, robust, scalable and high-performance certificate management solution for public-key infrastructure (PKI), extranets and intranets.
The release boasts multiple new features:
- Registration Authority (RA)
A front-end subsystem to the Certificate Authority (CA), the RA performs local authentication, requestor information gathering and request validation. It is also responsible for forwarding requests to the CA for signing. - Simple Certificate Enrollment Protocol (SCEP)
A protocol designed by Cisco, SCEP specifies a way for a router to communicate with RAs and CAs for enrollment. Red Hat Certificate System 7.3 enables routers to enroll for a certificate from an RA using this protocol. - Auto-Enrollment Proxy (AEP)
Designed to integrate seamlessly with an existing Windows Active Directory (AD) infrastructure, the AEP allows users and computers in a Microsoft Windows domain to automatically enroll for certificates issued from Red Hat Certificate System. - Security Officer (SO) mode
Smart Card Manager, in conjunction with the latest TPS Server software, now supports a special “Security Officer” mode of operation. This special mode, presented as an alternative to the standard user centric experience, allows a supervisory individual (e.g. Security Officer), the ability to oversee the face-to-face enrollment of regular users in a given organization. - In addition to Windows and Red Hat Enterprise Linux, the Enterprise Security Client (ESC) now supports Intel MAC 10.4.x.
Use of certificates with Red Hat Enterprise Linux 5:
Red Hat Certificate system can be used together with smart cards to increase the level of authentication security. Red Hat Certificate System can create and manage an end user’s certificate which is stored on a smart card.
The end user can insert his smart card into a smart card reader attached to a Red Hat Enterprise Linux 5 system. The end user then authenticates with his/her PIN and smartcard to gain access. The system can leverage this smart card authentication to generate a Kerberos ticket for the user that enables single-sign on to kerberos-aware applications like SSH, SCP and Fedora Directory server. Firefox and Thunderbird can use the end-user’s certificate to perform SSL client authentication to a web server that supports this.
For more information on Red Hat products, including the Red Hat Certificate System and Red Hat Enterprise Linux 5, visit here.
저자 소개
채널별 검색
오토메이션
기술, 팀, 인프라를 위한 IT 자동화 최신 동향
인공지능
고객이 어디서나 AI 워크로드를 실행할 수 있도록 지원하는 플랫폼 업데이트
오픈 하이브리드 클라우드
하이브리드 클라우드로 더욱 유연한 미래를 구축하는 방법을 알아보세요
보안
환경과 기술 전반에 걸쳐 리스크를 감소하는 방법에 대한 최신 정보
엣지 컴퓨팅
엣지에서의 운영을 단순화하는 플랫폼 업데이트
인프라
세계적으로 인정받은 기업용 Linux 플랫폼에 대한 최신 정보
애플리케이션
복잡한 애플리케이션에 대한 솔루션 더 보기
가상화
온프레미스와 클라우드 환경에서 워크로드를 유연하게 운영하기 위한 엔터프라이즈 가상화의 미래