Re: Regarding Certificate renewal

2014-01-21 Thread Bernhard Fröhlich
Ho there, from the technical perspective (which is the thing this list is concerned with) a renewed certificate is a new certificate for the same keys as the old one. No step of the three you list as necessary is necessary from the openssl point of view, but may be required by your CA. The

Re: Regarding Certificate renewal

2014-01-21 Thread Kamalraj Madhurakasan
Hello Ted, In our application we have requirement to introduce new option which allows customers to renew their certificates which was installed in it already. We would like to find out whether the new certificate is really a renewal certificate of old one so that we can allow them to replace

Re: Regarding Certificate renewal

2014-01-21 Thread Bernhard Fröhlich
Am 21.01.2014 11:21, schrieb Kamalraj Madhurakasan: Hello Ted, In our application we have requirement to introduce new option which allows customers to renew their certificates which was installed in it already. We would like to find out whether the new certificate is really a renewal

Regarding Certificate renewal

2014-01-20 Thread Kamalraj Madhurakasan
Hello guys, I would like to know whether my understanding about certificate renewal is correct or not. To renew the certificate: 1. we need to generate a new CSR from the private key 2. revoke the old certificate 3. get the new CSR signed by the CA with validity extended The fields that are