Requesting a signed certificate from the CA

Request a signed SSL certificate from the Certificate Authority.

Procedure

  1. Log in to the Sametime® System Console.
  2. In the navigation tree, click Security > SSL certificate and key management.
  3. In the "Related Items" section, click Key stores and certificates.
  4. In the Key stores and certificates window, select the appropriate keystore.
    • In a cell configuration, select CellDefaultKeyStore.
    • In a node configuration, select NodeDefaultKeyStore.

    Select a keystore.
  5. In the "Additional Properties" section, click Personal certificate requests.
  6. In the SSL certificate and key management window, provide information for the certificate request.

    In the File for certificate request field, provide a path and file name where the request will be stored when it is generated. In the Common name field, provide the host name of the server for which you are requesting the certificate. You can use the host's short name in the Key label field.

    If your organization has standards around SSL certificates, check with your Certificate Administrator before generating the certificate signing requests, and then fill in the form based on the information for your organization. Table 1. contains descriptions of the fields in the request form.

    Table 1. Certificate request fieldsNames and descriptions of the fields on the certificate request form.

    Request field Description Example value
    File Name Provide a path to the location where the certificate request file (.csr) will be stored. If a file with the same name already exists in that location, it will be overwritten. C:\SSLCSR\emeetings.csr
    Key Label Any descriptive name that can be used to identify the certificate. eMeetings
    Common Name Fully qualified host name of the server that will use the certificate. The host name must be resolvable in DNS. eMeetings.corp.renovations.com
    Organization Company or organization name Renovations
    Organizational Unit Organizational unit (for example, division or department) requesting the certificate. Information Technology
    Locality Location (for example, city) where the company is registered. Omaha
    State or Province Name of the state or province where the company is registered. Do not use abbreviations. Nebraska
    Zip Code Company postal code. 68116
    Country Code Two-character country code. US
  7. Click Apply and Save.

    The certificate request is created in the specified file location in the CellDefaultKeystore and functions as a temporary place holder for the signed certificate, until you manually receive the certificate in the keystore

  8. Send the generated .csr file to a CA for signing.