Home » Java » ssl certificate – Can CERTS with missing organization (-O=name) cause browsers to not trust java keytool CERTs?-Exceptionshub

ssl certificate – Can CERTS with missing organization (-O=name) cause browsers to not trust java keytool CERTs?-Exceptionshub

Posted by: admin February 25, 2020 Leave a comment

Questions:

I have been setting up project that uses the Java keytool to generate a CSR for a PrivateKey. Another organization (not our commercial SSL CA) then generates 3 CRT files – 1 for the PrivateKey, and 2 for themselves. The problem is, our web browsers report that the CERTs are not trusted (‘Not secure’ in chrome, and ‘This site is not secure’ in IE).

Could missing organization (-O) or wrong unit (-OU) entries in the CSR cause this ?

How to&Answers: