IdenTrust Inc. Logo
Home | Login | Contact Us  

  
OVERVIEW DIGITAL CERTIFICATE INSTRUCTIONS FAQ LIBRARY HOW-TO DOWNLOADS
iPlanet Enterprise Server 4.1

Support > Generation Instructions


Creating a Certificate Signing Request (CSR) and Key

Follow the step-by-step instructions to generate a certificate signing request (CSR) and key:

  1. Start your iPlanet Enterprise web server.
  2. Open the iPlanet Netscape administration page.
  3. Log in as the administrator.
  4. Click on Security.
  5. Select Create Database.
  6. Type in Database Password. Confirm Password. Click OK.
    Warning: If you lose the password, you must purchase another certificate.
  7. Click on Request a Certificate.
  8. Select New Certificate.
  9. Select CA URL (enter http://www.identrust.com/ in the box).
  10. Enter your key pair file password.
  11. When creating a CSR you must follow these conventions.
    Enter the Distinguished Name Field information.
    Note: The following characters can not be accepted:
    < > ~ ! @ # $ % ^ * / \ ( ) ?

    Distinguished
    Name Field
    Explanation Example
    Requester Name Your Name John Smith
    Telephone Number Your phone number (###) ###-####
    Common Name The fully qualified domain name for your web server. This must be an exact match. If you intend to secure the URL https://www.identrust.com/, then your CSR's common name must be www.identrust.com
    Organization Name The exact legal name of your organization. Do not abbreviate your organization name. IdenTrust Inc.
    Organization Unit Section of the organization Marketing
    City or Locality The city where your organization is legally located. Salt Lake City
    State or Province Name The state or province where your organization is legally located. Can not be abbreviated. Utah
    Zip or Postal Code The postal code where your organization is legally located. 55555
    Country Name The two-letter ISO abbreviation for your country US = United States
  12. Click OK when finished.
  13. Enter Certificate Request Information:
    What You See What You Should Type
    Operation Submit CSR
    Certificate Type Server
    Requester Name Name
    Requester E-mail E-mail Address
    Requester Phone Phone Number
    Requester Comments (Leave blank)
  14. The system will generate a CSR in PKCS #10 format which will start with ----BEGIN CERTIFICATE REQUEST---- and it will end with ----END CERTIFICATE REQUEST----
  15. Save this CSR into a text file. If you are using Windows, you can use Notepad to cut and paste the CSR and then save it.

Backing up your key pair file

A key-pair file contains both the public and private keys used for SSL encryption. You will use the key-pair file when you request and install a certificate. The key-pair file is stored encrypted in the following directory: server_root/alias/-key3.db.

When you create the key, you specify a password that you later use when you request the certificate and when you start a server that is using encrypted communications.

Creating the certificate trust database

  1. Access the Administration Server and choose the Security tab.
  2. Type the password in Database Password.
  3. Re-type the password in Password.
  4. Click OK.
If no database exists, iPlanet Web Server creates the proper key and certificate database files and stores them in the alias/ directory (otherwise, iPlanet Web Server displays an error message).

Back to Listing



RELATED CONTENT
Certificate Management Center
FAQ: Before You Buy
HOW-TO: Backup a Certificate
HOW-TO: Replace a Certificate
FAQ: General
FAQ: ACES
FAQ: ECA
FAQ: State of Washington
PKI Basics
Certificate Security and Protection
Change Control Schedules
Support Main
Contact Support
 

FEDERAL AGENCY PROGRAMS
Department of State
D-Trade
Department of Labor
Department of Labor
Department of Treasury IRS
Secure Data Transfer
MeF Electronic Filing Certificate
General Services Administration
eOffer

STATE AGENCY PROGRAMS
Florida
JCalendar for State Court Systems
West Virginia
Department of Environmental Protection
Virginia
Department of Transportation (VDOT)
Department of Mines Minerals and Energy (DMME)
 © 2008 IdenTrust Inc. All Rights Reserved    Home | Contact Us | Legal Policies IdenTrust