Nortel Networks NN46120-104 User Manual

Page 95

Advertising
background image

95

Organization Name: The registered name of the
organization. This organization must own the domain name
that appears in the common name of the Web server.
Do not abbreviate the organization name and do not use any
of the following characters:

< > ~ !

@ # $ % ^ * / \ ( ) ?

Organizational Unit Name: The name of the department or
group that uses the secure Web server.

Common Name: The name of the Web server as it appears
in the URL. This name must be the same as the domain
name of the Web server that is requesting a certificate. If the
Web server name does not match the common name in the
certificate, some browsers will refuse a secure connection
with your site. Do not enter the protocol specifier

(http://)

or any port numbers or path names in the common name.
Wildcards (such as * or ?) and IP address are not allowed.

E-mail Address: Enter the user’s e-mail address.

Subject Alternative Name: Comma-separated list of
URI:<uri>, DNS:<fqdn>, IP:<IP address>, email:<e-mail
address>.
Example:

URI:http://www.example.com,email:john@example
.com,IP:10.1.2.3

Generate new key pair [y]: In most cases you will want to
generate a new key pair for a CSR. However, if a configured
certificate is approaching its expiration date and you want to
renew it without replacing the existing key, answering no (n)
is appropriate. The CSR will then be based on the existing
key (for the specified certificate number) instead.

Key size [1024]: Specify the key length of the generated key.
The default value is 1024.

Request a CA certificate (y/n) [n]: Lets you specify whether
to request a CA certificate to use for client authentication.
Requesting a CA certificate is appropriate if you plan to issue
your own server certificates or client certificates, generating
them from the requested CA certificate. The default value is
to not request a CA certificate.

Specify challenge password (y/n) [n]:

2

Generate the CSR.

Press ENTER after you have provided the requested information.
The CSR is generated and displayed on screen:

Nortel VPN Gateway

User Guide

NN46120-104

02.01

Standard

14 April 2008

Copyright © 2007-2008 Nortel Networks

.

Advertising