<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Experienced at VMS, new to certificate environment in Operating System - OpenVMS</title>
    <link>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047226#M30108</link>
    <description>See also&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.process.com/VMSauth/index.html" target="_blank"&gt;http://www.process.com/VMSauth/index.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
    <pubDate>Wed, 16 May 2007 15:07:57 GMT</pubDate>
    <dc:creator>Ian Miller.</dc:creator>
    <dc:date>2007-05-16T15:07:57Z</dc:date>
    <item>
      <title>Experienced at VMS, new to certificate environment</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047224#M30106</link>
      <description>I am at a site trying to convert to use of USA Dept of Defense PKI-based certificates.  We have OpenVMS 7.3-2 with all patches through this month.  TCPIP 5.4 ECO6.  We haven't loaded any certificates yet.&lt;BR /&gt;&lt;BR /&gt;Our user environment is based on a Windows domain that requires PKI/ Computer Access Card (CAC) to log in.  User will connect to our OpenVMS box using Reflections, probably v11 or later. They have an SSH mode of operation, which we will of course test for compatibility.&lt;BR /&gt;&lt;BR /&gt;I have read over the OVMS documentation set but merely confused myself.  Can someone comment on any success they have had with a similar environment and perhaps offer a short bullet list of steps I'll need to make this puppy work?&lt;BR /&gt;</description>
      <pubDate>Wed, 16 May 2007 10:42:24 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047224#M30106</guid>
      <dc:creator>Richard W Hunt</dc:creator>
      <dc:date>2007-05-16T10:42:24Z</dc:date>
    </item>
    <item>
      <title>Re: Experienced at VMS, new to certificate environment</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047225#M30107</link>
      <description>You'll need to acquire or to create the software needed to tie OpenVMS into the authentication.  That's probably the most central key piece of this all, and it depends on what sort of distributed authentication is being used.&lt;BR /&gt;&lt;BR /&gt;Certificates for SSH allow the client and the server to be tied together and authenticated, but don't (out of the box) involve token-based authentication.  &lt;BR /&gt;&lt;BR /&gt;Software "behind the scenes" and usually based on or tied into ACME can allow this distributed authentication.  If that's via LDAP, all the better, as that's available.&lt;BR /&gt;&lt;BR /&gt;Some reading material, if you have not already seen it: &lt;A href="http://h71000.www7.hp.com/solutions/mail.html" target="_blank"&gt;http://h71000.www7.hp.com/solutions/mail.html&lt;/A&gt;&lt;BR /&gt;&lt;A href="http://h71000.www7.hp.com/openvms/security.html" target="_blank"&gt;http://h71000.www7.hp.com/openvms/security.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 16 May 2007 11:30:16 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047225#M30107</guid>
      <dc:creator>Hoff</dc:creator>
      <dc:date>2007-05-16T11:30:16Z</dc:date>
    </item>
    <item>
      <title>Re: Experienced at VMS, new to certificate environment</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047226#M30108</link>
      <description>See also&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.process.com/VMSauth/index.html" target="_blank"&gt;http://www.process.com/VMSauth/index.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 16 May 2007 15:07:57 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047226#M30108</guid>
      <dc:creator>Ian Miller.</dc:creator>
      <dc:date>2007-05-16T15:07:57Z</dc:date>
    </item>
    <item>
      <title>Re: Experienced at VMS, new to certificate environment</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047227#M30109</link>
      <description>OK, let's say I'm interested in getting as close as I can to the above stated environment.  There are ways of getting waivers on the fine details if I can get close. So...&lt;BR /&gt;&lt;BR /&gt;How close can I come starting from out of the box and without buying any more software than minimally necessary?  If I have a working SSH client and some certificates on the box, can I at least get SOME level of certificate usage activated?&lt;BR /&gt;</description>
      <pubDate>Wed, 23 May 2007 09:37:07 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047227#M30109</guid>
      <dc:creator>Richard W Hunt</dc:creator>
      <dc:date>2007-05-23T09:37:07Z</dc:date>
    </item>
    <item>
      <title>Re: Experienced at VMS, new to certificate environment</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047228#M30110</link>
      <description>Update:  Between the SSH utilities and OpenSSL 1.3 I am able to get pretty close.  The project was put on hold so I have left it behind for a while.  Other upgrades and migrations to different platforms and just generally chaotic operations.  A normal Navy day.  But after 1/1/08 we will be getting back to this topic.  I'll close this post and start a new one when I get somewhere.&lt;BR /&gt;</description>
      <pubDate>Fri, 07 Dec 2007 17:59:00 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047228#M30110</guid>
      <dc:creator>Richard W Hunt</dc:creator>
      <dc:date>2007-12-07T17:59:00Z</dc:date>
    </item>
    <item>
      <title>Re: Experienced at VMS, new to certificate environment</title>
      <link>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047229#M30111</link>
      <description>Closing thread - I'll create a new thread when I need one.&lt;BR /&gt;</description>
      <pubDate>Fri, 07 Dec 2007 17:59:41 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-openvms/experienced-at-vms-new-to-certificate-environment/m-p/5047229#M30111</guid>
      <dc:creator>Richard W Hunt</dc:creator>
      <dc:date>2007-12-07T17:59:41Z</dc:date>
    </item>
  </channel>
</rss>

