Skip to main content
Skip table of contents

Issue a certificate from the RA

The second part of this lab will issue certificates from the External RA Web.

First, the VA RA functionality will be configured and enabled for this VA instance. 

Once enabled, a long hanging connection will be established to the RA instance.

When a certificate request is placed on the queue it will be picked up by the CA and a certificate operation will be started. In this lab, you will use the REMOTE VA/RA to issue a certificate from the CA.

Slide Reference

External VA, with RA Functionality enabled; external RA functionality can be enabled or not

Multiple external RAs can be configured using a common trusted certificate or individual trusted certificates

Reminder you can visit the Accessing Your Environment page for details on how to connect to your RA web portal

Issue a Certificate

  1. Open a browser and click RA Web, from the ribbon menu across the top of page from your VA instance.

  2. Click Enroll >> Make New Request

  3. Select TLSClientEndEntityProfile as Certificate type

  4. Select Sub CA as CA

  1. In the Key-pair generation selection, select By the CA

  1. In the CN, Common Name field type RATest

  2. In the Username field type RATest

  3. In the Enrollment code field type foo123

  4. In the Confirm enrollment code field type foo123

  5. Click Download PKCS#12

  6. Save the file

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.