webMethods Integration Server 4.6

During the online enrollment process you will be required to provide Entrust Certificate Services with a Certificate Signing Request (CSR).

This encrypted data is generated from your Webmethods Certificate Toolkit 1.0, and contains information about your company and web server.

  • It is important to review this guideline, as Entrust Certificate Services will use this information to generate your certificate.

Private Key Creation Steps:

  1. Select Start from your Windows menu and choose Programs\webMethods\webMethods Certifictate Toolkit 1.0
  2. Select "Generate a Private Key" and choose Next
  3. Select 1024 bit key size
  4. Enter a name for your private key (privatekey) and choose Next
  5. Choose OK to the confirmation pop up.
  6. Make a note of your private key filename and the directory stored in.
  7. After creating the CSR and Trusted Root directory with CA root files, you will need to specify your private key DER file within the Certificate Settings under Security / Certificates in the IS Admin. Interface.

CSR Creation Steps:

  1. After you create your private key, you will be taken to the CSR generation screen.
  2. Fill in the CSR fields. DO NOT USE A REVOCATION PASSPHRASE
  3. This Organziation name should reflect the legally registered name of your company or organization.

    Note: This organization name must be the registrant title of the domain name that appears in Common Name (CN) of your web server.

    • Do not use the following characters in any of the fields in the Create New Key Wizard: > < ! @ # $ % ^ * ( ) ~ ? / \.

  4. Supply the Common Name (CN) of your web server in the field provided. This name must be identical to the fully qualified domain name of the site for which you are requesting a certificate.

    • If the web server name does not match the common name in the certificate, some browsers will refuse to establish a secure connection with your site.
    • Do not specify the protocol (http://), any port numbers or pathnames in the Common Name (CN).
    • Do not use wildcards such as * or ?.
      Do not use a Revocation Passphrase

  5. Once your CSR is created, you will see a new PEM file (Base64 encoded file) in your Certificate Toolkit directory (default), you may close the Certificate Toolkit.