Collections:
Other Resources:
OpenSSL "req new -batch" - Using DN Default Values Only
How to run OpenSSL "req -new" command in batch mode? I don't OpenSSL to use DN default values only and do not prompt me.
✍: FYIcenter.com
If you have DN (Distinguished Name) default values provided
in the configuration file, you can run OpenSSl "req -new -batch" command
to take default values only without prompt as shown below:
C:\Users\fyicenter>type test.cnf
# unnamed section of generic options
default_md = md5
# default section for "req" command options
[req]
input_password = fyicenter
prompt = yes
distinguished_name = my_req_dn_prompt
[my_req_dn_prompt]
# Minimum of 4 bytes are needed for common name
commonName = Common Name
commonName_default = FYIcenter.com CA
# ISO2 country code only
countryName = Country Name
countryName_default = US
# State is optional, no minimum limit
stateOrProvinceName = State
stateOrProvinceName_default = NY
# City is required
localityName = City
localityName_default = New York
# Organization is optional
organizationName = Organization
organizationName_default = FYIcenter.com
# Organization Unit is optional
organizationalUnitName = Department
organizationalUnitName_default = IT
# Email is optional
emailAddress = Email
emailAddress_default = ca@fyicenter.com
C:\Users\fyicenter>\local\openssl\openssl.exe
OpenSSL> req -new -key rsa_test.key -out test.csr -config test.cnf -batch
OpenSSL> req -in test.csr -text -noout
Certificate Request:
Data:
Version: 0 (0x0)
Subject: CN=FYIcenter.com CA, C=US, ST=NY, L=New York, O=FYIcenter.com,
OU=IT/emailAddress=ca@fyicenter.com
...
The output confirms that "req -new -batch" uses DN default values without prompting the user.
⇒ OpenSSL "req -new" - "no objects specified in config file" Error
2016-10-29, ∼5181🔥, 0💬
Popular Posts:
Can Microsoft "certutil" tool validates an expired certificates and reports the expired status? Yes....
How to get my certificate signed by getacert.com as the certificate issuer? Is it free? If you have ...
How to add a certificate into "cert8.db" file using Mozilla "certutil" tool? I have a certificate fi...
Certificate summary - Owner: *.uploaded.net, Domain Control Validated - RapidSSL(R), See www.rapidss...
Certificate Summary: Subject: login.yahoo.com Issuer: DigiCert High Assurance CA-3 Expiration: 2014-...