Re: [Openvpn-users] How to allow client to send cert request?

  • Subject: Re: [Openvpn-users] How to allow client to send cert request?
  • From: Matthew Wilson <matt@xxxxxxxxxx>
  • Date: Sat, 15 Sep 2007 01:49:27 +0000 (UTC)

On Fri Sep 14 15:14:18 2007, Marco Fretz wrote:
> hi
> yes they can use easy-rsa to create ther key and a crs (certification 
> sign request) on their own host. then they send u this csr (possible 
> over insecure line) and u sing this key with ur CA (with easy-rsa). 
> after this u send them the ca and the signed cert file back (possible 
> over a insecure line, too).
> rember, only keys have to be keept private. csr, ca.cert, etc. have not 
> to be private. (correct me if im wrong pls!)
> and thanks to openvpn =), easy-rsa is available in the windows and the 
> linux package / installer....
> kind regards
> marco

How do I use easy-rsa to do the certification sign request?

Thanks for the help!


