Custom KCA certificate profile extension can be changed by Vettor though set as not editable
Originally Published: 2004-03-08
Article Number
Applies To
Sun Solaris 2.8
Microsoft Windows 2000 Server SP4
Issue
The "editable : false" and "visible : false" parameters of the cRLDistPoints profile extension are not enforced by the GUI
Using custom KCA certificate profile extension to set CRLdp:
{
name : 'CRL Distribution Points',
type : 'mandatory',
autogenerate : false,
noncritical : {
def : false,
editable : false,
visible : false,
type : 'mandatory'
},
cRLDistPointsSyntax : {
def : 1,
min : 1,
max : 10,
visible : false,
editable : false,
type : 'mandatory',
elements : [
{
editable : false,
visible : false,
type : 'mandatory',
distributionPoint : {
def : 'fullName',
editable : false,
visible : false,
type : 'mandatory',
value : {
min : 1,
max : 10,
def : 1,
editable : false,
visible : false,
elements : [
{
def : 'uRI',
editable : false,
visible : false,
type : 'mandatory',
value : {
def : 'http://kca.acme.com:80/CRL/CA.crl',
editable : false,
visible : false,
type : 'mandatory',
validator : 'extCheckGenName(this)'
}
}
]
}
}
}
]
}
}
Cause
Resolution
Related Articles
Entitlements are removed from or added to a Role when the Role Set is changed in RSA Identity Governance & Lifecycle 236Number of Views Root CA certificate is required for activation error when importing a custom certificate signed by a known CA into Operati… 507Number of Views How to generate a vettor certificate from a PKCS#10 (CSR) request 92Number of Views Unrecognized string/value shown in SubjectAltName extension of a certificate issued using the MS Logon Cert profile 19Number of Views Generating a Software Token Report for RSA Authentication Manager with Lifetime Extension Information 190Number of Views
Trending Articles
Update an existing RSA Cloud Authentication Service Integrated Windows Authentication (IWA) Connector Identity Provider SA… RSA Authentication Manager 8.9 Release Notes (January 2026) Downloading RSA Authentication Manager license files or RSA Software token seed records RSA Authentication Manager 8.x import of replacement certificate fails with the error This certificate is already imported Artifacts to gather in RSA Identity Governance & Lifecycle
Don't see what you're looking for?