TSA Settings
Property |
Description |
Supported Request Extensions |
List of accepted extensions in the TSA request object. Default values: 2.5.4.5,2.16.484.101.10.316.20.37.1117.
|
Add TSA Subject Name in Time Stamp Token |
When enabled, TSA response signing certificate subject distinguished name will be added to the generated time stamp token.
|
Supported Hash Algorithms |
Comma separated list of accepted hash algorithms (Name/OID) used to compute the message imprint in the TSA request objects.
Note: Whenever SHA1 is used, both SHA and SHA1 must be specified as shown above. |
Signature Padding Scheme |
Define the time stamp signature padding scheme to be used when generating a time stamp token. ADSS Server supports both the usual (default) PKCS#1 and RSA PSS 2.1 padding scheme. Possible values for this feature are:
Note: Whenever SHA1 is used, both SHA and SHA1 must be specified as shown above. Click here for more details on limitations when PSS padding scheme is used. |
TSA Support for additional ISO/IEC Standards |
When enabled, the ADSS TSA Server complies with the guidelines of ISO/IEC 18014-1 and ISO/IEC 18014-2 for generating and verifying tokens. Default value: FALSE
|
TRANSACTION_LOG_COLUMNS |
If your database size grows too quickly because a lot of TSA transactions are being logged then the size of log information can be reduced by removing some data columns from the database logs. The following are the attributes which manages the logging of specified column:
If you remove any of the column in these properties then that column's value will not be stored as part of transaction logging. The columns consuming most resources are "Request" and "Response" and for very high volumes these should be removed. Note: When using ADSS TSA Server as a proxy for an external TSA, then these values are useful: ExternalTsaAddress and Message. Usual Logging for an TSA Service
Minimal logging for an TSA Service
Parameters Mapping with Transaction Log Viewer Definition of each configuration parameter and their purpose:
|
Transaction Log Settings |
Transactions can be stored either directly or delayed for better performance. The following properties are used for logging:
|
See also
Verification Service
Certification Service
OCSP Service
OCSP Repeater
XKMS Service
SCVP Service
LTANS Service
Decryption Service
OCSP Monitor
GoSign Service
RA Service
CRL Monitor
RAS Service
SAM Service
CSP Service
NPKD Service
SPOC Service