Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The issuing process begins with the OpenPeppol member requesting a PKI v3 certificate through the Jira service desk.

Jira Service Desk can be accessed here: https://openpeppol.atlassian.net/servicedesk/customer/portal/1

After the request has been approved by PEPPOL Operations and the responsible PEPPOL Authority an enrollment email and SMS will be sent to the OpenPeppol member.

Image RemovedImage Added

Detailed enrollment instructions

Once you have obtained the enrollment email containing your assigned 'Service Provider ID' and an SMS with the enrollment code, you are good ready to issue the certificate.

The issuing or certificate generation is done by the OpenPeppol member using a web browser, please follow the detailed instructions with regards to which web browser is used

Certificate chains

After the enrollment process is complete you will end up with a private key pair. Some implementations might require you to chain this private key pair with the OpenPEPPOL Intermediate CA and Root CA. Whether you actually need a chain of certificates or how you would chain the certificates is out of scope for the migration process, you would need to ask the vendor of your implementation regarding what the expected format of the certificate is to be used in your particular use case. The relevant CAs can be downloaded from section Download CAs.

Requirements

The enrollment process for a new certificate (or renewal of an existing certificate) is done online through a web browser. Only a specific subset of an OS/Web browser combination is supported according to the following table (there might be other combinations that works but they are officially not supported).

...