To be completed
White Paper SSL - Automate DV ordering process
Examples automatic CSR generation
From technical point of view, the first step in the SSL certificate order process is the generation of the private key and the CSR on your web server. This page provides you with examples for several web server types. If you have suggestions for these or other examples, a comment would be much appreciated!
Supported on most Linux/Unix based web servers. The following command creates two files:
- your.csr is the CSR, required for the SSL order
- your.private.key is the private key, required for the installation
We advise that you change these file names in the command to more meaningful names, for example www.openprovider.nl.csr and www.openprovider.nl.key.
openssl req -new -sha256 -newkey rsa:2048 -nodes \
-out your.csr \
-keyout your.private.key \
-subj "/C=NL/ST=Zuid-Holland/L=Rotterdam/O=Your Company/OU=ICT dept/CN=domain.com/emailAddressfirstname.lastname@example.org"
The section that you must customize is the -subj parameter. The different values are the following:
C is the 2-character country code of the requestor
ST is the state/province of the requestor
L is the city (location) of the requestor
O is the company name
OU is an optional field for “organization unit”
CN is the domain name itself, including any www or other subdomain, if applicable
emailAddress is the e-mail address of the requestor