SSL Certificates

CSR Instructions - Domino Go 4.6.2.6+

Follow these instructions to generate a CSR for your Web site. When you have completed this process, you will have a CSR ready to submit to eWAY in order to be generated into a SSL Security Certificate.

OpenSSL is the open source project that replaced SSLeay. If you are using SSLeay on your system instead of OpenSSL, substitute ssleay with openssl for the commands.

  1. Start the MKKF utility by typing mkkf at the command prompt. The system displays a menu page.

    *Note: The MKKF utility places the keyring file in the current directory unless otherwise specified.

  2. Select N to create a new key ring file, default file name is keyfile.kyr.

    After you type in a key ring file name, the next menu screen will come up.

  3. Select W to work with keys and certificates.

  4. Select C to create a new key and certificate request. Type a password when prompted.

    Warning: If you forget the password, you must purchase another certificate.

    See the certificate replacement policy at the bottom of these instructions.

  5. Select P to choose PKCS#10 certificate request format at the next menu.

  6. Select M to modify the certificate request fields at the next menu.

    The following characters can not be accepted: < > ~ ! @ # $ % ^ * / \ ( ) ?&.

    Distinguished Name Fields Explanation Example
    Country Name The two-letter ISO abbreviation for your country. US = United States
    State or Province Name The state or province where your organization is located. Can not be abbreviated. Georgia
    City or Locality The city where your organization is located. Atlanta
    Company (Organization) Name The exact legal name of your organization. Do not abbreviate your organization name. My Company, Inc
    Organizational Unit Optional for additional organizational information. Marketing
    Common Name (Server Host Name) The fully qualified domain name for your web server. You will get a certificate name check warning if this is not an exact match. If you intend to secure the URL https://secure.mydomain.com, then your CSR's Server Hostname must be secure.mydomain.com
    Server Administration email address (if applicable) Your email address abc@mydomain.com

  7. Select R to create the key and certificate request after specifying all fields.

  8. After the key and certificate request are created,select X to exit from MKKF utility. Save the changes to the key-ring file.

    *Make a backup copy of your keyring file and store it in a safe place.

  9. Submit your CSR to eWAY® by completing the online enrollment forms.

» Return to CSR Instruction List