|     |   | 
| (2 intermediate revisions by the same user not shown) | 
| Line 1: | Line 1: | 
| − | == SSL Certificates Using OpenSSL == | + | =This Content Has Moved House= | 
|  |  |  |  | 
| − | This article is designed for Emersion clients who need to obtain an SSL certificate but have limited access to resources who are educated in web technologies, specifically Open SSL. The process described below is only one method toobtaining a valid certificate. It is best if you engage with a company who can complete this process foryou,but if you wish to do-it-yourself, we have provided a method below. | + | This article has been moved to our new home for documentation and help content, the new Emersion Knowledge Base. | 
|  |  |  |  | 
| − | At theend of this process you will have an SSL certificate that is verified (signed) anda private key. You need to submit both of these toEmersion.
 | + | We are sorry for the untidiness while we are shifting locations and we appreciate your patience during the transition to our new home. | 
|  |  |  |  | 
| − | === Prerequisites === 
 | + | [https://resources.emersion.com/display/EKB/SSL+Certificates+Using+Open+SSL Take me to the Emersion Knowledge Base article] | 
|  |  |  |  | 
| − | First, install [https://www.openssl.org Open SSL] on your computer, or log in to a computer or server with Open SSL installed on it.
 | + | [[file:new_home_sm.jpg|900px]] | 
| − |   |  | 
| − | == Step One: Generate the CSR ==
 |  | 
| − |   |  | 
| − | <span style="color: red; text-decoration: none;">
 |  | 
| − | Despite claims to the contrary, you do not need Emersion to generate the CSR from our web server. You can generate a certificate from any machine with Open SSL installed</span>
 |  | 
| − | Generating a Certificate Signing Request (CSR) is the first step to obtaining your certificate. You need to know the URL of your website and the certificate will only be valid for that URL. 
 |  | 
| − |   |  | 
| − | E.g.:  myaccount.yourdomain.com.au, signuip.
 |  | 
| − |   |  | 
| − | 1. Go to the [http: https://www.digicert.com/easy-csr/openssl.htm Open SSL CSR generator]
 |  | 
| − | 2. Fill in the details
 |  | 
| − | 3. When you are happy with your settings, click '''Generate'''. It should look like the example below.
 |  | 
| − |   |  | 
| − | [[File:CSR_request.png]] |  | 
| − |   |  | 
| − | In the Open SSL CSR generator, you will be shown a command to copy/paste containing the parameters you entered. 
 |  | 
| − |   |  | 
| − | 4. Copy (CTRL+C) the command to the clipboard.
 |  | 
| − |   |  | 
| − | 5. On the machine with Open SSL, open a terminal session, paste the command and run it.
 |  | 
| − |   |  | 
| − | OpenSSL creates both your private key and your CSR. It saves them to two files: 
 |  | 
| − |   |  | 
| − | * signup_mycompany_com_au.key
 |  | 
| − | * signup_mycompany_com_au.csr
 |  | 
| − |   |  | 
| − | You will need to keep both of these files handy and we recommend you store them in a secure location. 
 |  | 
| − |   |  | 
| − | == Step Two: Contact a Certificate Signing Authority ==
 |  | 
| − |   |  | 
| − | Once you have a CSR for your website, it needs to be sent to a Certificate Signing Authority who will validate and sign the certificate for you. The verification and validation process will vary based on the provider, the type of SSL certificate you request and how long you want the certificate to be valid for. 
 |  | 
| − |  
 |  | 
| − | Emersion remains independent and will not recommend a specific Certificate Signing Authority. A certificate Signing Authority will assist you to choose the certificate that best suits you, and guide you on the specific process for your certificate.
 |  | 
| − |   |  | 
| − | == Step: Three: Sending the Certificate and the Private Key to Emersion ==
 |  | 
| − |   |  | 
| − | Once the signed SSL certificate has been delivered to you, forward it to Emersion with the Private Key. We need '''<i>both</i>''' the SSL Certificate and Private Key in order to complete the installation of the SSL Certificate on the server.
 |  | 
| − |   |  | 
| − | It will look like this when opened:
 |  | 
| − |   |  | 
| − | '''A signed SSL Certificate'''
 |  | 
| − |   |  | 
| − | [[File:SSL_certificate.png]]
 |  | 
| − |   |  | 
| − |   |  | 
| − | '''Private Key – Viewed in a text editor'''
 |  | 
| − |   |  | 
| − | [[File:SSL_private_key.png]]
 |  | 
| − |   |  | 
| − | Emersion is not a Certificate Signing Authority. We cannot sign or verify a certificate request for you.
 |  | 
This article has been moved to our new home for documentation and help content, the new Emersion Knowledge Base.
We are sorry for the untidiness while we are shifting locations and we appreciate your patience during the transition to our new home.