Re: Installing replacement certs

Pete Helgren <[email protected]> Sun, 7 May 2023 19:42:58 -0500
Newsgroups gmane.comp.systems.as400.web
Message-ID <[email protected]>
Interesting....I just import the bundle, remembering the "bundle" is the 
cert plus the intermediates (three certs in my case).  The LetsEncrypt 
CA root is already present (most CA roots are already in DCM).

I always just use the same csr since it only needs to be created once, 
unless your server key changes, or the key length is changed....most of 
my csr's haven't changed in years.

The only place I got tripped up in the past when when I imported and 
forgot to choose "Server or Client" and "Automatically renewed 
certificate".  But I have fully automated the LetsEncrypt renewals with 
DCM now so I don't have to do a manual import except in rare occasions.....

Pete Helgren
www.petesworkshop.com
GIAC Secure Software Programmer-Java
GIAC Cloud Penetration Tester
AWS Certified Cloud Practitioner
Microsoft Certified: Azure Fundamentals

On 5/7/2023 3:53 PM, Jon Paris wrote:
> OK - I just used copy/paste to create the individual certs.
>
> Thanks for the help it is all working now.
>
>
> Jon P.
-- 
This is the Web Enabling the IBM i (AS/400 and iSeries) (WEB400) mailing list
To post a message email: [email protected]
To subscribe, unsubscribe, or change list options,
visit: https://lists.midrange.com/mailman/listinfo/web400
or email: [email protected]
Before posting, please take a moment to review the archives
at https://archive.midrange.com/web400.