CSRs and the email field

Posted: 06/07/2007 12:47:06
by Allen Drennan (Standard support level)
Joined: 05/29/2007
Posts: 11

We generating CSR requests for SSL web server certificates programmatically, we have noticed that Thawte and Verisign will reject our CSR if we include the "email" field in our request. This doesn't happen with GoDaddy which works fine. Is there something special we should be doing when generating these requests so they are more compatible?
Posted: 06/07/2007 13:08:10
by Eugene Mayevski (Team)

You see, the standard specifies lots of things that you may include to your CSR. If some particular CA rejects some information, we have no control nor possibility to enforce them not to do this. Just recently another user reported that Verisign doesn't accept his CSR with no explanation at all. You are lucky to know the source of the problem, at least.

Sincerely yours
Eugene Mayevski



