English   
  首接负责制,让您放心选购和使用各种数字证书产品!  
  在线帮助、MSN、QQ、Email 和 免费服务热线 为您提供最优质的售前售后服务!
 
可信网商认证服务与产品
可信供应商认证证书
可信企业认证证书
可信供应商数据库
可信网站认证服务与产品
全球可信网站认证标识
全球可信网站认证证书
  SGC超真SSL
  SGC超真SSL-EV
  超真SSL-EV
可信软件开发商认证产品
微软代码签名证书
火狐插件签名证书
Java等代码签名证书
PKI(CA)托管产品
超管CA-企业版
各类产品分网站
互联网 • 更多 • 安全
可信数字身份认证服务
EV SSL证书
客户端证书
SSL证书请求文件(CSR)生成指南 - IBM HTTP Server
 

重要注意事项 An Important Note Before You Start

在生成CSR文件时同时生成您的私钥,如果您丢了私钥或忘了私钥密码,则颁发证书给您后不能安装成功!您必须重新生成私钥和CSR文件,免费重新颁发新的证书。为了避免此情况的发生,请在生成CSR后一定要备份私钥文件和记住私钥密码,最好是在收到证书之前不要再动服务器。
By far the most common problem users have when going through this process is related to private keys. If you lose or cannot access a private key, you cannot use the certificate we issue to you and will need to request a free reissue. To ensure this never happens, we advise that a backup of the private key file is made and that a note is made of the password that is used to protect the export of the private key.

To generate the key and CSR for IBM HTTP server through IKEYMAN

please follow the instructions below:

Firstly a Key Database File(.kdb) using IKEYMAN needs to be generated. Please follow these steps :

1. Open the IKEYMAN Utility (From Windows NT click Start -> Programs -> IBM HTTP Server -> Start Key Management Utility
2. From the Menu Bar select "Key Database File"
3. Click on NEW
4. File Name= (The name you want to give the new Key Database file you are creating)
5. Location= (the location on the harddrive you wish to store the .kdb file)
Note: On NT this is usually the /IBM Http Server/ssl directory
6. After Saving the file to the location specified you will be prompted to enter a password
Note: This is the password that will be used to open the .kdb file in IKEYMAN in the future
7. Make sure to click the box that states "stash the password to a file?"
Note: This will encrypt the password and save the file as a .sth file in the same directory
as the .kdb file.
8. Once you click OK, you are done.

Generating the CSR

1. Open the Key Database File(.kdb) using the IKEYMAN utility
2. In the middle of the IKEYMAN GUI you will see a section called "Key database content"
3. Click on the "down arrow" to the right, to display a list of three choices
4. Select "Personal Certificate Requests"
5. Key Label= (The name you want to give the certificate to identify it in IKEYMAN)
Note: Using the SiteName (ex. www.domain.com ) as the label is a good practice
6. Key Size= (1024 for 128bit, 512 for 56bit)
7. Common Name= (SiteName, ex. www.domain.com )
Note: This is the name that the Thawte will register, so it is important it matches the actual SiteName
8. Organization= (Company Name)
9. "Enter the name of a file in which to store the certificate request"
Note: This is the file (.arm) that will contain your request. It is a simple text file that can be opened in any text editor. The information contained in this file is what Thawte needs you to provide us.
*Saving this file(.arm) in the same directory as the (.kdb) file is recommended.
10. Once you save the file (.arm) you are done with creating the request

For more information please refer to this IBM technical support link:
http://www-1.ibm.com/support/docview.wss?rs=0&q=+ikeyman+and+ssl+certificate&uid=swg21006430&loc=en_US&cs=utf-8&cc=us&lang=en

For more information on using the Ikeyman please referr to this: http://www-306.ibm.com/software/webservers/httpservers/doc/v1312/ibm/9atikeyu.htm#Header_9

 

测试CSR和把CSR发给WoSign, Start the certificate request process

生成CSR后,建议您自己测试一下生成的CSR文件是否正确,请点击 这里 测试您的CSR文件。请把测试成功的CSR文件发给WoSign即可。请一定不要再动您的服务器,等待证书的颁发。
To submit the CSR to WoSign for processing you should start the certificate enrollment process.



 
© 2002-2010 深圳市沃通电子商务服务有限公司 All Rights Reserved
中国深圳市高新技术产业园南区方大大厦 18 楼 邮编 :518057
网站使用条款       隐私声明       中国增值电信业务经营许可证编号:粤B-20040618
WoSign®、I'm Verified®、WoTrust®、沃通®、WoTone® 为深圳市沃通电子商务服务有限公司注册商标