Skip to content
Discussion options

You must be logged in to vote

Hi,

So, you're going to have to take a small step back =) The SubCA needs to be signed by the Root CA before it issues anything, otherwise it's just a root-CA of its own.

There's actually a tutorial covering this use case in our docs: https://doc.primekey.com/ejbca/solution-areas/issuing-tls-certificates#IssuingTLSCertificates-CreateRootCA

Cheers,
Mike

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by mike-agrenius-kushner
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants