Generate a CSR for Juniper Networks Secure Access
This procedure is extracted from the online documentation 'AdminGuide V6.0'.Warning: you need to upgrade to a version SA 6.5 or higher to generate a 2048-bit CSR. If you can't, you'll have to use OpenSSL to generate 2048-bit key and CSR and use a PKCS12 to import.
1- Creation of a certificate request(CSR)
For a new certificate
Connect to the Management Console
- Select
System > Configuration > Certificates > Device Certificates. - Click on New CSR.
- Enter the requested information, then click on Create CSR.
(if you are given the choice for the key length, select 2048-bit at least)
-
CN: Common name / domain name / server name:
Indicate here your SSL server name, such as "secure.company.com", "www.my-domain.com" or "www.product.com". No IP address. No spaces nor blank characters.
-
C: Country:
indicate FR if your company is in France, BE for Belgium, etc, in uppercase preferably. -
ST: State:
in France indicate the name of the department where your company headquarters are based (not the number). -
L: City:
indicate the city in which your company headquarters are based. -
O: Organization:
indicate the corporate name of your company (no trade name or acronym), in uppercase preferably. -
OU: Organisational unit / Department / Branch:
We advise not to fill in this field or to enter a generic term such as "IT Department".
-
CN: Common name / domain name / server name:
2- Finalize the order process
- Use the appropriate link to place your order on our website. See Access an order form
- Copy/paste the CSR including the BEGIN and END lines.
Last edited on 06/30/2017 15:19:41 --- [search]