Skip to content
Discussion options

You must be logged in to vote

I don't think this is possible, if you didn't get it working. But the subject DN in the request should not matter as the issuing CA should set the correct DN when issuing the certificate. A CA should not just copy-past the DN and extensions from a request, that's dangerous for compliance mistakes. All (that we know of) CAs are able to set the proper values on certificates issued. Albeit it has been common for ADCS Root CA to be configured to just copy-past from the request, ADCS can be configured to set the values that the Root CA actually wants.

Therefore the CSR from EJBCA is pretty basic, it doesn't really matter.

Having said that, I would agree that it would be natural for the CSR to …

Replies: 1 comment 2 replies

Comment options

You must be logged in to vote
2 replies
@hoihochan
Comment options

@primetomas
Comment options

Answer selected by hoihochan
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants