Using Microsoft Certificates with HP-UX IPSec A.02.01
• Store certificate in the local computer certificate store
Specifies that you want the key pair and certificate stored in the certificate store for the
local computer. You must select this option.
• Request Format
Format for the CSR. HP used PKCS10.
• Hash Algorithm
Hash algorithm for the certificate signature. Select SHA-1.
Leave the Attributes window (not shown) blank.
Click Submit. The Certificates Services will display a confirmation message with your
certificate request ID. Record this ID; the CA administrator will need it to approve the
request.
Step 2: Approving the CSR
Use the procedure described in “Step 3: Approving the CSR” (page 13).
Step 3: Installing the Client Certificate
On the Windows client, use the following procedure to install the client certificate.
NOTE: HP recommends that you use the same utility to request and install the client certificate.
In this procedure, HP used the web-based Certificate Services utility to request and install the
certificate.
1. Start a web browser.
Connect to the Microsoft Certificate Services on the CA system using the following URL:
http://ca_system/certsrv
where ca_system is the CA system name or IP address.
2. The Microsoft Certificate Services utility starts and displays the Welcome page.
Select View the status of a pending certificate request (Figure 21).
26