Follow these instructions to generate a CSR for your Web site. When you have completed
this process, you will have a CSR ready to submit to eWAY in order to be
generated into a SSL Security Certificate.
OpenSSL is the open source project that replaced SSLeay. If you are using SSLeay
on your system instead of OpenSSL, substitute ssleay with openssl for the commands.
- Start the MKKF utility by typing mkkf at the command prompt. The system displays
a menu page.
*Note: The MKKF utility places the keyring file in the current directory unless
otherwise specified.
- Select N to create a new key ring file, default file name is keyfile.kyr.
After you type in a key ring file name, the next menu screen will come up.
- Select W to work with keys and certificates.
- Select C to create a new key and certificate request. Type a password when
prompted.
Warning: If you forget the password, you must purchase another certificate.
See the certificate replacement policy at the bottom of these instructions.
- Select P to choose PKCS#10 certificate request format at the next menu.
- Select M to modify the certificate request fields at the next menu.
The following characters can not be accepted: < > ~ ! @ # $ % ^ * / \ ( )
?&.
|
Distinguished Name Fields
|
Explanation
|
Example
|
|
Country Name
|
The two-letter ISO abbreviation for your country.
|
US = United States
|
|
State or Province Name
|
The state or province where your organization is located. Can not be abbreviated.
|
Georgia
|
|
City or Locality
|
The city where your organization is located.
|
Atlanta
|
|
Company (Organization) Name
|
The exact legal name of your organization. Do not abbreviate your organization name.
|
My Company, Inc
|
|
Organizational Unit
|
Optional for additional organizational information.
|
Marketing
|
|
Common Name (Server Host Name)
|
The fully qualified domain name for your web server. You will get a certificate
name check warning if this is not an exact match.
|
If you intend to secure the URL https://secure.mydomain.com, then your CSR's Server
Hostname must be secure.mydomain.com
|
|
Server Administration email address (if applicable)
|
Your email address
|
abc@mydomain.com
|
- Select R to create the key and certificate request after specifying all fields.
- After the key and certificate request are created,select X to exit from MKKF
utility. Save the changes to the key-ring file.
*Make a backup copy of your keyring file and store it in a safe place.
- Submit your CSR to eWAY® by completing the online enrollment forms.
»
Return to CSR Instruction List