It all depends on what may be needed for scalability, fail over, both
are possible, but I would probably keep the root CA separate / standalone.
One TPS can use several CA's, or several TPS instances can work with a CA.
The main idea is to use the "security domains", TPS will look for CA's
to use in their security domain, and use their "trusted managers".
May want to see:
http://docs.redhat.com/docs/en-US/Red_Hat_Certificate_System/8.0/html-sin...
http://docs.redhat.com/docs/en-US/Red_Hat_Certificate_System/8.0/html-sin...
M.
On 02/15/2011 06:38 AM, Fabian Bertholm wrote:
Hi,
When running multiple sub CAs with one common root CA.
Do I attach one TPS to the Root CA or do I attach multiple TPS systems
to each Sub CA?
Best regards,
fabe
_______________________________________________
Pki-users mailing list
Pki-users(a)redhat.com
https://www.redhat.com/mailman/listinfo/pki-users