Hi all,

Well, I played a lot with my certificate, test certificates blah, blah,
blah and the final answer is NO. You cannot, AFAIK, use an existing
certificate unless you generated the request with keytool and you kept
the keystore. The key point is that when you generate a certificate
request, public key and private key are generated and stored in the
keystore, if you didn't create your request with keytool you don't have
this information and when you import the real certificate, it is treated
as a trusted certificate (like Verisigns one) but not as valid key to
validate himself. I didn't fin any info on how to import the private key
into the keystore so I asume the answer is that you cannot. Requesting a
new certificate whose request has been generated with the keytool seems
to be the answer but then you have to pay again.
I would suggest this information to be included in the SSL how-to as
this might save other people from getting the headaches I got while
playing with all these buzzwords ;).
Regards and thank you to all the people that offered their advice.
Dan

Rafael Alvarez wrote:
> 
> Hello Daniel,
> Sorry for the delay in the answer.
> I had the same trouble migrating a certificate from IIS to orion.
> 
> Did you generate the request to Verisign using the keystore where
> you're importing it? If not, you need to request a new certificate.
> Check Verisign to see how that can be done.
> 
> Hope this help.
> 
> --
> Best regards,
>  Rafael                            mailto:[EMAIL PROTECTED]

Reply via email to