Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Creating a CRT SSL Certificate

Posted on 2008-10-15
5
Medium Priority
?
2,916 Views
Last Modified: 2013-11-29
I paid for a SSL cert from Verisign for our FTP server and according to the software vendor of the FTP software we purchased I need the key file and the CRT file to install the cert. I have the cer, key and csr files, but no CRT file. How do I convert the CSR or get this CRT for the server?

Thanks, Scott...

0
Comment
Question by:smuth
  • 3
  • 2
5 Comments
 

Author Comment

by:smuth
ID: 22721434
I do have a txt file with the actual cert in it as well
0
 
LVL 31

Accepted Solution

by:
Paranormastic earned 2000 total points
ID: 22722226
Depending on the app, sometimes you can get away with doing:
copy YourCert.cer YourCert.crt

If not, then you need an SSL tool - the standard is OpenSSL which is opensource (free):
http://www.slproweb.com/products/Win32OpenSSL.html
(search page for "Win32 OpenSSL v0.9.8i Light")

openssl.exe x509 -in YourCert.cer -out YourCert.crt

(note the .exe is usually in the "c:\openssl\bin" folder)
0
 

Author Comment

by:smuth
ID: 22723532
I was able to create the crt file with openssl, but it is still not working. I am using gene6 ftp server and they told me to put the key and crt files in the certs directory and then change the setup.ini and add the following two lines

SSLCertKeyPath=ftp.domain.com
SSLPassPhrase=<PEM passphrase entered at csr generation>

I did this and it still does not work. I am not sure if it is their software or the cert. Any ideas?
0
 
LVL 31

Expert Comment

by:Paranormastic
ID: 22735059
Have you installed the cert to your local computer cert store?  When installing can try auto, or you can manually install it - check the box for show physical stores and point to Personal and there should be a local computer subfolder.
Another thought is if you have the root cert chain installed - if this is your own CA then you will need to do this (http://caname/certsrv and take the 3rd option and get the root cert chain), if not you may still need to do that - some roots like godaddy are newer than SP2 so you could go to SP3 or get the current root cert list here:
http://www.microsoft.com/downloads/details.aspx?FamilyId=F814EC0E-EE7E-435E-99F8-20B44D4531B0&displaylang=en
0
 

Author Closing Comment

by:smuth
ID: 31506312
This worked for the most part. I guess their software is a little tricky and I had to install the cert a little different after I created the crt file. Thanks for your help
0

Featured Post

New Tabletop Appliances Blow Competitors Away!

WatchGuard’s new T15, T35 and T55 tabletop UTMs provide the highest-performing security inspection in their class, allowing users at small offices, home offices and distributed enterprises to experience blazing-fast Internet speeds without sacrificing enterprise-grade security.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Many companies are looking to get out of the datacenter business and to services like Microsoft Azure to provide Infrastructure as a Service (IaaS) solutions for legacy client server workloads, rather than continuing to make capital investments in h…
Encryption for Business Encryption (https://en.wikipedia.org/wiki/Encryption) ensures the safety of our data when sending emails. In most cases, to read an encrypted email you must enter a secret key that will enable you to decrypt the email. T…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…
Suggested Courses
Course of the Month10 days, 14 hours left to enroll

885 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question