| Apache +
Raven |
| Generate a Certificate Signing
Request — CSR |
Follow these instructions to generate a CSR for your Web site. When you have completed this process, click the
Close button above to close this window and continue to the next step.
Please note that the Certificate Signing Request — CSR instructions are followed by key pair backup instructions.
- Enter Server Name. i.e. Common Name.
- Select the size of encryption key. We recommend 1024. Please note
that the encryption key size (512 bit or 1024 bit) has nothing to do with the actual session key (128
bit or 40 bit).
- Enter pass phrase to encrypt key.
Please note that if you lose the passphrase, you must purchase another certificate.
Please refer to the certificate replacement policy at the bottom of these instructions.
- Choose the server to request a certificate for:
For the version 1.5.1 select NO to send the CSR to VeriSign.
For the version 1.5 select YES to send the CSR to VeriSign.
Please note that if you select NO, a required field will be missing and the CSR will be invalid.
For the version 1.5x enter the same pass phrase entered generating the private key above.
- Enter the information to be displayed in the certificate.
Distinguished
Name Field |
Explanation |
Example |
| Common
Name |
The
fully qualified domain name for your web server. This must be
an exact match. |
If
you intend to secure the URL https://www.supralink.com/,
then your CSR's common name
must be www.supralink.com. |
| Organization |
The
exact legal name of your organization. Do not abbreviate your
organization name. |
SupraLink |
| Organization
Unit |
Section
of the organization. |
Marketing |
| City
or Locality |
The
city where your organization is legally located. |
Montréal |
| State
or Province |
The
state or province where your organization is legally located.
Cannot be abbreviated. |
Quebec |
| Country |
The
two-letter ISO abbreviation for your country. |
CA |
| Server Admin's Email
Address |
Your email address. |
admin@domain.com |
- Send the CSR to your email address or display the CSR on your console.
- Exit RavenCTL.
- While waiting for your certificate from SupraLink, you can use the self-signed certificate generated above.
Please note that if you would like to verify the contents of the CSR, use the following command:
$
openssl req -noout -text -in server.csr
- Create a backup copy of the private key.
Backup the servername.key file from the raven/module/pki/keys directory to a secure location and remember the PEM passphrase
generated in step 3.
Please note that to view the contents of the private key, use the following command:
$ openssl rsa -noout -text -in
servername.key.
- Submit your CSR to SupraLink - you will be asked to complete the agreement and the enrollment form as well.
Innovating Information Security
SupraLink, in partnership with GeoTrust, the leading provider of next
generation information security services, delivers secure e-commerce
transactions, identity verification and authentication solutions to
the global web community. SupraLink ensures a new level of
e-business security — your first step toward leveraging the full
business potential of the Internet.
|