SSL Certificate with an intermediate certificate

Discussion in 'Parallels Remote Application Server' started by Rene3, Apr 10, 2008.

  1. Rene3

    Rene3 Member

    Messages:
    33
    Hi

    I have recently acquired a ssl certificate from VeriSign. They make use of an intermediate certifiate too, but where do i put that ?

    I have now my private key file, with my private key.
    I have my certificate file, with my certificate.
    And i have a VeriSign intermediate certificate, that I should put where ?

    I have tried to put both my certificate and the verisign intermediate certificate in the same file, but with no luck. If i put the intermediate first, it just says that my private key file does not match, and if i put the intermediate certificate last, it seems to just ignore it.

    The error i am getting on the client side is:
    Unable to get local issuer certificate. <20>

    Hope you can help me out.
     
  2. nixu

    nixu Guest

    When the client is installed a file called trusted.pem is installed too. This keeps a list of public keys of the common trusted certificates.

    So basically you have to add the intermediate certificate in this file.

    Nixu
     
  3. Rene3

    Rene3 Member

    Messages:
    33
    And can I do that in the .msi file ?

    Would like to not have to tell people that after they have installed they should copy another file over too.

    Tried with exchaging the file with WinInstall LE 2003, but i am getting a 2602 error when trying to use the new msi.
     
  4. Rene3

    Rene3 Member

    Messages:
    33
    Ow and a follow up questing, which i probably should have asked before i got the certificate.

    Which certificate issuers do you support "out of the box" ?

    Seems strange that a major player like Verisign is not included in the trusted.pem file from the start.
     
  5. nixu

    nixu Guest

    Verisign's root certificate is supported, but it seams that the intermediate certificate from Verisign is not.

    Nixu
     
  6. Rene3

    Rene3 Member

    Messages:
    33
    Ok. Will the intermediate certificates be supported in future releases ? Since it seems that VeriSign does not issue certificates without using one or more intermediate certificates. And have not done so since April 2006.
     
  7. omonnig

    omonnig Guest

    certificate support

    They do not support GoDaddy either. :(

    2x has not responded to my query as to how to deploy trusted.pem to my hundreds of widely distributed users, on whose machines I do not have admin rights.
     

Share This Page