Netscape Enterprise Server 3.5x Support
During the online enrollment process you will be required to provide Entrust Certificate Services with a Certificate Signing Request (CSR).
This encrypted data is generated from your Web Server, and contains information about your company and Web server.
! It is important to review this guideline, as Entrust Certificate Services will use this information to generate your certificate.
To generate your Key Pair and Certificate Signing Request (CSR):
- Launch the sec-key utility to create your Private Key:
- Select Start > Run.
- Provide the full path to the sec-key utility. By default, this utility is found in c:\netscape\suitespot\bin\admin\admin\bin\sec-key.
- Select 'OK' to continue.
- Supply an Alias by which to reference your key-pair.
- Select 'OK' to continue.
- Select 'OK' to continue.
- Move your mouse around the screen to complete the Random Number Seed Generator
- Supply a password for your new key-pair.
- Select 'OK' to continue
! It is very important that you remember this password. If you forget it you will not be able to gain access to your Private Key.
- Supply your password again for verification.
- Select 'OK' to continue
- Select 'OK' to complete the creation of your new key-pair.
- Launch the Administration HTML interface to generate your Certificate
Signing Request (CSR):
- Select Start > Programs > Netscape SuiteSpot > Administration
- Select 'Keys and Certificates'
- Select 'Request Certificate' from the menu options available in the left frame.
- Select the 'New Certificate' radio button.
- Select the 'CA Email address' radio button, and supply your own email address in the space provided.
- Select the key file that contains the public key you wish to include in the certificate from the Alias drop-down list.
- Supply the password for your key file in the space provided.
- Supply your name, telephone number, and email address in the spaces provided.
! If the Web server name does not match the common name in the certificate, some browsers will refuse to establish a secure connection with your site.
! Do not specify the protocol (http://), any port numbers or pathnames in the Common Name (CN).
! Do not use wildcards such as * or ?.
- Enter the distinguished name (DN) of your server, keeping the following example in mind:
"CN" - Common Name = www.entrust.net (this is the URL of your website)
"O" - Organization = Entrust, Inc.
"OU" - Organizational Unit = Entrust Certificate Services
"L" - Locality = Ottawa
"St" - State/Province = Ontario
"C" - Country/Region = CA - Select 'OK' once you have entered the necessary information.
- Copy the Certificate Signing Request (including the "-----BEGIN NEW CERTIFICATE REQUEST-----" and "-----END NEW CERTIFICATE REQUEST-----" lines) and paste into a text document for later retrieval.
You have successfully created your Private Key and Certificate Signing Request (CSR).
![[Certification Authorities - Webtrust - Deloitte]](/images/cert_services/deloitte_seal_sm.jpg)