Collections:
Other Resources:
OpenSSL "req new -batch" - Using DN Default Values Only
How to run OpenSSL "req -new" command in batch mode? I don't OpenSSL to use DN default values only and do not prompt me.
✍: FYIcenter.com
If you have DN (Distinguished Name) default values provided
in the configuration file, you can run OpenSSl "req -new -batch" command
to take default values only without prompt as shown below:
C:\Users\fyicenter>type test.cnf
# unnamed section of generic options
default_md = md5
# default section for "req" command options
[req]
input_password = fyicenter
prompt = yes
distinguished_name = my_req_dn_prompt
[my_req_dn_prompt]
# Minimum of 4 bytes are needed for common name
commonName = Common Name
commonName_default = FYIcenter.com CA
# ISO2 country code only
countryName = Country Name
countryName_default = US
# State is optional, no minimum limit
stateOrProvinceName = State
stateOrProvinceName_default = NY
# City is required
localityName = City
localityName_default = New York
# Organization is optional
organizationName = Organization
organizationName_default = FYIcenter.com
# Organization Unit is optional
organizationalUnitName = Department
organizationalUnitName_default = IT
# Email is optional
emailAddress = Email
emailAddress_default = ca@fyicenter.com
C:\Users\fyicenter>\local\openssl\openssl.exe
OpenSSL> req -new -key rsa_test.key -out test.csr -config test.cnf -batch
OpenSSL> req -in test.csr -text -noout
Certificate Request:
Data:
Version: 0 (0x0)
Subject: CN=FYIcenter.com CA, C=US, ST=NY, L=New York, O=FYIcenter.com,
OU=IT/emailAddress=ca@fyicenter.com
...
The output confirms that "req -new -batch" uses DN default values without prompting the user.
⇒ OpenSSL "req -new" - "no objects specified in config file" Error
2016-10-29, ∼5158🔥, 0💬
Popular Posts:
How to decode an X.509 certificate and view its content? To help you to decode X.509 certificate and...
Certificate summary - Owner: CAcert Class 3 Root, http://www.CAcert.org, CAcert Inc. Issuer: EMAILAD...
How to import a root CA certificate into certificate stores using "certmgr.msc"? I have the certific...
Why I am getting the "wrong signature length" error when running the OpenSSL "req -verify" command? ...
Certificate summary - Owner: www.ameba.jp, Ameba section, "CyberAgent, Inc.", L=shibuya-ku, ST=Tokyo...