From: <ope...@li...> - 2003-10-13 09:48:21
|
Update of /cvsroot/openca/openca-0.9/docs/guide In directory sc8-pr-cvs1:/tmp/cvs-serv6163/openca-0.9/docs/guide Modified Files: openca-guide.html openca-guide.pdf openca-guide.ps Log Message: OpenCA is now a real server Michael Index: openca-guide.html =================================================================== RCS file: /cvsroot/openca/openca-0.9/docs/guide/openca-guide.html,v retrieving revision 1.39 retrieving revision 1.40 diff -C2 -d -r1.39 -r1.40 *** openca-guide.html 19 Sep 2003 15:10:23 -0000 1.39 --- openca-guide.html 13 Oct 2003 09:47:54 -0000 1.40 *************** *** 1,27 **** ! <html><head><meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1"><title>OpenCA Guides for 0.9.2+</title><link rel="stylesheet" href="default.css" type="text/css"><meta name="generator" content="DocBook XSL Stylesheets V1.61.3"></head><body bgcolor="white" text="black" link="#0000FF" vlink="#840084" alink="#0000FF"><div class="book" lang="en"><div class="titlepage"><div><div><h1 class="title"><a name="id2795859"></a>OpenCA Guides for 0.9.2+</h1></div><div><div class="authorgroup"><div class="author"><h3 class="author"><span class="firstname">Chris</span> <span class="surname">Covell</span></h3></div><div class="author"><h3 class="author"><span class="firstname">Michael</span> <span class="surname">Bell</span></h3></div></div></div></div><div></div><hr></div><div class="toc"><p><b>Table of Contents</b></p><dl><dt><a href="#id2852729">Introduction</a></dt><dt>I. <a href="#id2802972">Installation and Configuration Guide</a></dt><dd><dl><dt><a href="#id2802985">Preface</a></dt><dt>1. <a href="#id2803002">Installation</a></dt><dd><dl><dt>1. <a href="#id2803011">Preparations</a></dt><dd><dl><dt>1.1. <a href="#id2803020">Software</a></dt><dt>1.2. <a href="#id2803134">Hardware</a></dt></dl></dd><dt>2. <a href="#id2803184">Configure</a></dt><dd><dl><dt>2.1. <a href="#id2803263">Host System Configuration</a></dt><dt>2.2. <a href="#id2803468">Filesystem paths</a></dt><dt>2.3. <a href="#id2803615">Webserver specific stuff</a></dt><dt>2.4. <a href="#id2803770">Email</a></dt><dt>2.5. <a href="#id2803787">Compiling features</a></dt><dt>2.6. <a href="#id2803816">Hierarchy Level</a></dt></dl></dd><dt>3. <a href="#id2803855">Installation</a></dt><dt>4. <a href="#id2804055">config.xml (for RPMs and DEBs too)</a></dt><dd><dl><dt>4.1. <a href="#id2804134">Configuration sections of config.xml</a></dt><dt>4.2. <a href="#id2799787">How to setup two management interfaces on one server?</a></dt></dl></dd></dl></dd><dt>2. <a href="#id2800054">Configuration</a></dt><dd><dl><dt>1. <a href="#id2800063">Access Control</a></dt><dd><dl><dt>1.1. <a href="#id2800274">Channel verification</a></dt><dt>1.2. <a href="#id2800349">Login</a></dt><dt>1.3. <a href="#id2866921">Session management</a></dt><dt>1.4. <a href="#id2866962">ACLs</a></dt></dl></dd><dt>2. <a href="#id2867531">Token and keyconfiguration</a></dt><dd><dl><dt>2.1. <a href="#id2867827">OpenSSL</a></dt><dt>2.2. <a href="#id2867988">Empty</a></dt><dt>2.3. <a href="#id2868006">LunaCA3</a></dt></dl></dd><dt>3. <a href="#id2868145">OpenSSL</a></dt><dd><dl><dt>3.1. <a href="#id2868208">Certificate Extensions</a></dt><dt>3.2. <a href="#id2868708">Profiles</a></dt></dl></dd><dt>4. <a href="#admin_guide_csr">CSRs</a></dt><dd><dl><dt>4.1. <a href="#id2869112">Additional Attributes</a></dt><dt>4.2. <a href="#id2869288">PKCS#10 Requests</a></dt><dt>4.3. <a href="#id2869358">Basic CSR</a></dt><dt>4.4. <a href="#id2869950">SCEP</a></dt></dl></dd><dt>5. <a href="#id2869968">Subject</a></dt><dd><dl><dt>5.1. <a href="#id2869978">Common stuff</a></dt><dt>5.2. <a href="#id2870179">dc style</a></dt></dl></dd><dt>6. <a href="#id2870418">Subject Alternative Name</a></dt><dt>7. <a href="#id2870489">LDAP</a></dt><dd><dl><dt>7.1. <a href="#id2870516">Configuration of the Directory</a></dt><dt>7.2. <a href="#id2870588">Configuration of the RA components</a></dt><dt>7.3. <a href="#id2870933">Writing Certifciates to the Directory</a></dt></dl></dd><dt>8. <a href="#admin_guide_scep">SCEP</a></dt><dd><dl><dt>8.1. <a href="#id2871032">OPENCADIR/etc/servers/scep.conf</a></dt><dt>8.2. <a href="#id2871112">OPENCADIR/etc/config.xml</a></dt></dl></dd><dt>9. <a href="#id2871195">Dataexchange</a></dt><dd><dl><dt>9.1. <a href="#id2871205">Configuration</a></dt><dt>9.2. <a href="#id2871452">Adding a new node</a></dt></dl></dd></dl></dd></dl></dd><dt>II. <a href="#id2871537">User Guide</a></dt><dd><dl><dt><a href="#id2871548">Preface</a></dt><dt>3. <a href="#id2871564">Interface Descriptions</a></dt><dd><dl><dt>1. <a href="#id2871572">Public PKI Server</a></dt><dd><dl><dt>1.1. <a href="#id2871589">CA</a></dt><dt>1.2. <a href="#id2871689">User</a></dt><dt>1.3. <a href="#id2872114">Certificates</a></dt><dt>1.4. <a href="#id2872347">Requests</a></dt></dl></dd><dt>2. <a href="#id2872409">Registration Authority</a></dt><dd><dl><dt>2.1. <a href="#id2872433">Administration</a></dt><dt>2.2. <a href="#id2872472">Pending Requests</a></dt><dt>2.3. <a href="#id2872600">Information</a></dt><dt>2.4. <a href="#id2872658">Utilites</a></dt></dl></dd><dt>3. <a href="#id2872683">Registration Authority Node</a></dt><dd><dl><dt>3.1. <a href="#id2872700">Gateways</a></dt><dt>3.2. <a href="#id2872772">Administration</a></dt><dt>3.3. <a href="#id2873179">Utilites</a></dt></dl></dd><dt>4. <a href="#id2873250">LDAP Interface</a></dt><dd><dl><dt>4.1. <a href="#id2873264">Update LDAP</a></dt><dt>4.2. <a href="#id2873323">View CA-Certificates</a></dt><dt>4.3. <a href="#id2873426">View Certificates</a></dt><dt>4.4. <a href="#id2873755">View CRLs</a></dt></dl></dd></dl></dd><dt>4. <a href="#id2873828">Functionality Descriptions</a></dt><dd><dl><dt>1. <a href="#id2873838">CA Initialization</a></dt><dd><dl><dt>1.1. <a href="#id2873914">Phase I: Initialize the Certification Authority</a></dt><dt>1.2. <a href="#id2874228">Phase II and III: Create the initial administrator and RA certificate</a></dt></dl></dd><dt>2. <a href="#user_guide_csr_handling">CSR Handling - a request HOWTO</a></dt><dd><dl><dt>2.1. <a href="#id2874565">Ways to request a certificate</a></dt><dt>2.2. <a href="#id2875047">Edit a certificate signing requests</a></dt><dt>2.3. <a href="#id2875184">Approve certificate signing requests</a></dt><dt>2.4. <a href="#id2875203">Issue a certificate from a certificate signing request</a></dt><dt>2.5. <a href="#id2875222">Certificate enrollment</a></dt><dt>2.6. <a href="#id2875239">Delete certificate signing requests</a></dt></dl></dd><dt>3. <a href="#user_guide_cert_handling">Certificate Handling</a></dt><dd><dl><dt>3.1. <a href="#id2875284">Find a certificate</a></dt><dt>3.2. <a href="#id2875345">Download</a></dt><dt>3.3. <a href="#id2875552">Start revocation</a></dt><dt>3.4. <a href="#id2875563">Write an email to the owner</a></dt><dt>3.5. <a href="#id2875575">Informations and their meaning</a></dt></dl></dd><dt>4. <a href="#id2875591">SCEP</a></dt><dd><dl><dt>4.1. <a href="#id2875589">SSCEP</a></dt><dt>4.2. <a href="#id2875751">NetScreen ScreenOS</a></dt><dt>4.3. <a href="#id2875949">F-Secure VPN+</a></dt></dl></dd></dl></dd></dl></dd><dt>III. <a href="#id2876130">Design Guide</a></dt><dd><dl><dt><a href="#id2876140">Preface</a></dt><dt>5. <a href="#id2876176">General Design</a></dt><dd><dl><dt>1. <a href="#id2876189">Basic Hierarchy</a></dt><dt>2. <a href="#id2876411">Interfaces</a></dt><dd><dl><dt>2.1. <a href="#id2876569">Node</a></dt><dt>2.2. <a href="#id2876611">CA</a></dt><dt>2.3. <a href="#id2876637">RA</a></dt><dt>2.4. <a href="#id2876653">LDAP</a></dt><dt>2.5. <a href="#id2876671">Pub</a></dt></dl></dd><dt>3. <a href="#id2876754">Configuration</a></dt><dt>4. <a href="#id2876764">Database</a></dt><dt>5. <a href="#id2876776">Interface</a></dt><dt>6. <a href="#id2876787">Lifecycle of the objects</a></dt><dt>7. <a href="#id2876902">Sub-Ca</a></dt><dd><dl><dt>7.1. <a href="#id2876908">Example 1</a></dt><dt>7.2. <a href="#id2876922">Example 2</a></dt></dl></dd></dl></dd><dt>6. <a href="#id2876941">Recommendations</a></dt><dd><dl><dt>1. <a href="#id2876961">Hardware Issues</a></dt><dd><dl><dt>1.1. <a href="#id2876975">Computers</a></dt><dt>1.2. <a href="#id2876986">Buildings</a></dt></dl></dd><dt>2. <a href="#id2876999">Network Issues</a></dt><dt>3. <a href="#id2877016">Certificate Issues</a></dt><dt>4. <a href="#id2877032">Organizational Aspects</a></dt></dl></dd></dl></dd><dt>IV. <a href="#id2877051">Technology Guide</a></dt><dd><dl><dt><a href="#id2877062">Preface</a></dt><dt>7. <a href="#id2877090">Introduction</a></dt><dd><dl><dt>1. <a href="#slot">Slotechnology</a></dt></dl></dd><dt>8. <a href="#XML">XML</a></dt><dt>9. <a href="#Crypto">Cryptolayer</a></dt><dt>10. <a href="#AC">Accesscontrol</a></dt><dt>11. <a href="#Log">Logging</a></dt><dt>12. <a href="#Web">Webinterfaces</a></dt><dd><dl><dt>1. <a href="#interfaces">Interfacebuilding</a></dt><dd><dl><dt>1.1. <a href="#id2878201">HTML</a></dt><dt>1.2. <a href="#id2878219">cmds</a></dt><dt>1.3. <a href="#id2878308">configuration files</a></dt><dt>1.4. <a href="#id2878596">configure_etc.sh</a></dt></dl></dd><dt>2. <a href="#CSS">CSS</a></dt><dt>3. <a href="#configure_etc">Configuration after installation</a></dt></dl></dd><dt>13. <a href="#hierarchy">Hierarchy</a></dt><dd><dl><dt>1. <a href="#node">Nodemanagement</a></dt><dt>2. <a href="#dataexchange">Dataexchange</a></dt></dl></dd><dt>14. <a href="#ldap">LDAP</a></dt><dd><dl><dt>1. <a href="#id2878803">supported options</a></dt><dt>2. <a href="#id2879099">LDAP schema specification</a></dt><dd><dl><dt>2.1. <a href="#id2879107">Used objectclasses</a></dt><dt>2.2. <a href="#id2879228">Supported attributes</a></dt><dt>2.3. <a href="#id2879320">Common definitions for distinguished names</a></dt><dt>2.4. <a href="#id2879688">Special definitions for user certificates</a></dt></dl></dd><dt>3. <a href="#id2879868">Sourcecodeorganization</a></dt><dd><dl><dt>3.1. <a href="#id2879875">Structure of the code</a></dt><dt>3.2. <a href="#id2879909">The relevant commands</a></dt><dt>3.3. <a href="#id2880016">export-import.lib</a></dt><dt>3.4. <a href="#id2880029">ldap-utils.lib</a></dt></dl></dd></dl></dd><dt>15. <a href="#id2880076">Software Design (legacy from design guide)</a></dt><dd><dl><dt>1. <a href="#id2880085">Database(s)</a></dt><dt>2. <a href="#id2880096">Interface construction</a></dt><dt>3. <a href="#id2880107">openca.cgi</a></dt><dt>4. <a href="#id2880118">libraries</a></dt><dt>5. <a href="#id2880130">modules</a></dt><dt>6. <a href="#id2880141">commands</a></dt><dt>7. <a href="#id2880152">Dataexchange and Node management</a></dt></dl></dd></dl></dd><dt>A. <a href="#id2880167">FAQ</a></dt><dd><dl><dt>1. <a href="#id2880176">General PKI Issues</a></dt><dd><dl><dt>1.1. <a href="#id2880183">What is a certificate?</a></dt><dt>1.2. <a href="#id2880210">Which informations does a certificate contain?</a></dt><dt>1.3. <a href="#id2880286">What is a request?</a></dt><dt>1.4. <a href="#id2880326">Which information does a CSR contain?</a></dt><dt>1.5. <a href="#id2880378">What is a CA?</a></dt><dt>1.6. <a href="#id2880397">Why should I not place the CA on the same machine like ! the RA?</a></dt><dt>1.7. <a href="#id2880427">What is an extensions?</a></dt><dt>1.8. <a href="#id2880438">I use Windows 2000 and Internet Explorer 6 SP1 and it don't ! show any CSPs.</a></dt><dt>1.9. <a href="#id2880490"></a></dt></dl></dd><dt>2. <a href="#id2880501">General OpenCA Issues</a></dt><dd><dl><dt>2.1. <a href="#id2880509">Does it be possible to revoke a certificate without any user ! interaction?</a></dt><dt>2.2. <a href="#id2880539">I try to add a role and get the message ! The role XYZ exists already!</a></dt><dt>2.3. <a href="#id2880572">All cryptographic operations fail.</a></dt><dt>2.4. <a href="#id2880600">Apache's error_log reports a nonexistent option ! -subj of openssl req</a></dt><dt>2.5. <a href="#id2880642">Apache's error_log contains a message from IBM DB2 that the ! environment is not setted</a></dt><dt>2.6. <a href="#id2880667">What do the new features of 0.9.2 be?</a></dt><dt>2.7. <a href="#id2880775">I try to approve and sign a request with Mozilla and it fails.</a></dt><dt>2.8. <a href="#id2880826">I try to approve and sign a request with Konqueror (KDE) and it fails.</a></dt><dt>2.9. <a href="#id2880842">How is the format of the disc to import the CA certificate ! from the root CA?</a></dt></dl></dd><dt>3. <a href="#id2880862">Configuration Issues</a></dt><dd><dl><dt>3.1. <a href="#id2880869">What is a hierarchy level?</a></dt><dt>3.2. <a href="#id2880979">How can I configure my httpd.conf for virtual hosts?</a></dt><dt>3.3. <a href="#id2881047">How can I configure virtual hosts with ./configure?</a></dt><dt>3.4. <a href="#id2881085">I have some users which should not be published in LDAP. ! Does it be possible with OpenCA?</a></dt><dt>3.5. <a href="#id2881109">Does it be possible to authenticate users by their [...3063 lines suppressed...] UTF-8 String Representation of Distinguished Names</i>. </span><span class="corpname">IETF. </span><span class="date">December 1997. </span></p></div><div class="biblioentry"><p><span class="title"><i><a href="http://www.ietf.org/rfc/rfc2311.txt" target="_top">RFC 2311</a> S/MIME: --- 3766,3770 ---- five are set. A good choice is 63 for a first debugging session. You can read the details in <b class="command">man slapd.conf</b>. ! </p></div></div></div><div class="bibliography"><div class="titlepage"><div><div><h2 class="title"><a name="id2882537"></a>Bibliography</h2></div></div><div></div></div><div class="biblioentry"><p><span class="title"><i><a href="http://www.openssl.org" target="_top">OpenSSL's webpage</a></i>. </span><span class="corpname">OpenSSL project. </span></p></div><div class="biblioentry"><p><span class="title"><i><a href="http://www.openca.org" target="_top">OpenCA's webpage</a></i>. </span><span class="corpname">OpenCA project. </span></p></div><div class="biblioentry"><p><span class="title"><i><a href="http://www.ietf.org/html.charters/pkix-charter.html" target="_top">PKIX</a></i>. </span><span class="corpname">IETF. </span></p></div><div class="biblioentry"><p><span class="title"><i><a href="http://www.ietf.org/rfc/rfc2246.txt" target="_top">RFC 2246</a> The TLS Protocol Version 1.0</i>. </span><span class="authorgroup"><span class="firstname">T.</span> <span class="surname">Dierks</span> and <span class="firstname">C.</span> <span class="surname">Allen</span>. </span><span class="corpname">IETF. </span><span class="date">January 1999. </span></p></div><div class="biblioentry"><p><span class="title"><i><a href="http://www.ietf.org/rfc/rfc2253.txt" target="_top">RFC 2253</a> LDAP - UTF-8 String Representation of Distinguished Names</i>. </span><span class="corpname">IETF. </span><span class="date">December 1997. </span></p></div><div class="biblioentry"><p><span class="title"><i><a href="http://www.ietf.org/rfc/rfc2311.txt" target="_top">RFC 2311</a> S/MIME: *************** *** 3782,3786 **** with Lightweight Directory Access Protocol</i>. </span><span class="authorgroup"><span class="firstname">Timothy A.</span> <span class="surname">Howes</span> and <span class="firstname">Marc C.</span> <span class="surname">Smith</span>. </span><span class="corpname">Macmillan Technology Series, Macmillan Technical Publishing. </span><span class="date">1997. </span></p></div><div class="biblioentry"><p><span class="title"><i>Understanding and Deploying LDAP Directory Services</i>. </span><span class="authorgroup"><span class="firstname">Timothy A.</span> <span class="surname">Howes</span>, <span class="firstname">Marc C.</span> <span class="surname">Smith</span>, and <span class="firstname">Gordon S.</span> <span class="surname">Good</span>. </span><span class="corpname">Macmillan Network Architecture and Development Series, ! Macmillan Technical Publishing. </span><span class="date">1999. </span></p></div><div class="biblioentry"><p><span class="title"><i>Public Key Infrastructure for KMU's (Project report, German only)</i>. </span><span class="authorgroup"><span class="firstname">Stefan</span> <span class="surname">Dietiker</span> and <span class="firstname">Chris</span> <span class="surname">Berger</span>. </span><span class="corpname">Zuericher Hochschule Winterthur. </span><span class="date">Jule 2003. </span></p></div><div class="biblioentry"><p><span class="title"><i>Aufbau und Betrieb einer Zertifizierungsinstanz, DFN-PCA Handbuch (German only)</i>. </span><span class="authorgroup"><span class="firstname">I.</span> <span class="surname">Camphausen</span>, <span class="firstname">St.</span> <span class="surname">Kelm</span>, <span class="firstname">B.</span> <span class="surname">Liedtke</span>, and <span class="firstname">L.</span> <span class="surname">Weber</span>. </span><span class="corpname">Deutsches Forschungsnetz - DFN (Germany`s National Research and Education Network). </span><span class="date">May 2000. </span></p></div><div class="biblioentry"><p><span class="title"><i><a href="http://www.setco.org" target="_top">Homepage of the SET standard</a></i>. </span><span class="corpname">SET Secure Electronic Transaction LLC. </span></p></div></div><div class="glossary"><div class="titlepage"><div><div><h2 class="title"><a name="id2883656"></a>Glossary</h2></div></div><div></div></div><dl><dt><a name="glossary_CA"></a>CA</dt><dd><p>Certification Authority</p></dd><dt><a name="glossary_CRL"></a>CRL</dt><dd><p>Certificate Revocation List</p></dd><dt><a name="glossary_CRR"></a>CRR</dt><dd><p>Certificate Revocation Request</p></dd><dt><a name="glossary_CSR"></a>CSR</dt><dd><p>Certificate Signing Request</p></dd><dt><a name="glossary_DN"></a>DN</dt><dd><p>Distinguished Name</p></dd><dt><a name="glossary_LDAP"></a>LDAP</dt><dd><p>Lightweight Directory Access Protocol</p></dd><dt><a name="glossary_LOA"></a>LOA</dt><dd><p> Level Of Assurance defines the quality of the identification of the certificate owner. Sometimes it is usefule to know how the owner of --- 3787,3791 ---- with Lightweight Directory Access Protocol</i>. </span><span class="authorgroup"><span class="firstname">Timothy A.</span> <span class="surname">Howes</span> and <span class="firstname">Marc C.</span> <span class="surname">Smith</span>. </span><span class="corpname">Macmillan Technology Series, Macmillan Technical Publishing. </span><span class="date">1997. </span></p></div><div class="biblioentry"><p><span class="title"><i>Understanding and Deploying LDAP Directory Services</i>. </span><span class="authorgroup"><span class="firstname">Timothy A.</span> <span class="surname">Howes</span>, <span class="firstname">Marc C.</span> <span class="surname">Smith</span>, and <span class="firstname">Gordon S.</span> <span class="surname">Good</span>. </span><span class="corpname">Macmillan Network Architecture and Development Series, ! Macmillan Technical Publishing. </span><span class="date">1999. </span></p></div><div class="biblioentry"><p><span class="title"><i>Public Key Infrastructure for KMU's (Project report, German only)</i>. </span><span class="authorgroup"><span class="firstname">Stefan</span> <span class="surname">Dietiker</span> and <span class="firstname">Chris</span> <span class="surname">Berger</span>. </span><span class="corpname">Zuericher Hochschule Winterthur. </span><span class="date">Jule 2003. </span></p></div><div class="biblioentry"><p><span class="title"><i>Aufbau und Betrieb einer Zertifizierungsinstanz, DFN-PCA Handbuch (German only)</i>. </span><span class="authorgroup"><span class="firstname">I.</span> <span class="surname">Camphausen</span>, <span class="firstname">St.</span> <span class="surname">Kelm</span>, <span class="firstname">B.</span> <span class="surname">Liedtke</span>, and <span class="firstname">L.</span> <span class="surname">Weber</span>. </span><span class="corpname">Deutsches Forschungsnetz - DFN (Germany`s National Research and Education Network). </span><span class="date">May 2000. </span></p></div><div class="biblioentry"><p><span class="title"><i><a href="http://www.setco.org" target="_top">Homepage of the SET standard</a></i>. </span><span class="corpname">SET Secure Electronic Transaction LLC. </span></p></div></div><div class="glossary"><div class="titlepage"><div><div><h2 class="title"><a name="id2883734"></a>Glossary</h2></div></div><div></div></div><dl><dt><a name="glossary_CA"></a>CA</dt><dd><p>Certification Authority</p></dd><dt><a name="glossary_CRL"></a>CRL</dt><dd><p>Certificate Revocation List</p></dd><dt><a name="glossary_CRR"></a>CRR</dt><dd><p>Certificate Revocation Request</p></dd><dt><a name="glossary_CSR"></a>CSR</dt><dd><p>Certificate Signing Request</p></dd><dt><a name="glossary_DN"></a>DN</dt><dd><p>Distinguished Name</p></dd><dt><a name="glossary_LDAP"></a>LDAP</dt><dd><p>Lightweight Directory Access Protocol</p></dd><dt><a name="glossary_LOA"></a>LOA</dt><dd><p> Level Of Assurance defines the quality of the identification of the certificate owner. Sometimes it is usefule to know how the owner of Index: openca-guide.pdf =================================================================== RCS file: /cvsroot/openca/openca-0.9/docs/guide/openca-guide.pdf,v retrieving revision 1.35 retrieving revision 1.36 diff -C2 -d -r1.35 -r1.36 Binary files /tmp/cvsZeYcAA and /tmp/cvsgCQ8Jm differ Index: openca-guide.ps =================================================================== RCS file: /cvsroot/openca/openca-0.9/docs/guide/openca-guide.ps,v retrieving revision 1.11 retrieving revision 1.12 diff -C2 -d -r1.11 -r1.12 *** openca-guide.ps 19 Sep 2003 15:10:27 -0000 1.11 --- openca-guide.ps 13 Oct 2003 09:47:56 -0000 1.12 *************** *** 5920,6862 **** /Title(OpenCA Guides for 0.9.2+) /DOCINFO pdfmark ! [/Dest /id2895836 /Page 118 /View [/XYZ 97.2 651.727 0] /DEST pdfmark ! [/Dest /id2880347 /Page 28 /View [/XYZ 64.8 412.619 0] /DEST pdfmark ! [/Dest /id2882524 /Page 36 /View [/XYZ 64.8 214.447 0] /DEST pdfmark ! [/Dest /id2883854 /Page 42 /View [/XYZ 64.8 591.352 0] /DEST pdfmark ! [/Dest /id2890389 /Page 83 /View [/XYZ 64.8 727.2 0] /DEST pdfmark ! [/Dest /id2880343 /Page 28 /View [/XYZ 64.8 412.619 0] /DEST pdfmark ! [/Dest /id2892567 /Page 100 /View [/XYZ 64.8 303.825 0] /DEST pdfmark ! [/Dest /id2893414 /Page 104 /View [/XYZ 64.8 727.2 0] /DEST pdfmark [...13769 lines suppressed...] /Border [0 0 0 [0]] ! /Dest /id2893490 /ANN pdfmark [/Subtype /Link /Rect [530.0 236.125 540.0 245.125] /Border [0 0 0 [0]] ! /Dest /id2893490 /ANN pdfmark 120.0 238.295 moveto --- 107347,107356 ---- /Rect [120.0 236.125 281.34 245.125] /Border [0 0 0 [0]] ! /Dest /id2893597 /ANN pdfmark [/Subtype /Link /Rect [530.0 236.125 540.0 245.125] /Border [0 0 0 [0]] ! /Dest /id2893597 /ANN pdfmark 120.0 238.295 moveto |