State Or Province Name: From the address of the organization cre-
ating up the Certificate.
Locality Name: Locale of the organization creating the Certificate.
Organization Name: The name of the organization creating the Cer-
tificate.
Organization Unit Name: The applicable subdivision of the organ-
ization creating the Certificate.
Common Name (e.g. Hostname or IP): This is the name of the host
being authenticated. The Common Name field in the X.509 Certificate
must match the hostname, IP address, or URL used to reach the host
via HTTPS.
Email Address: This is the email address of the organization creating
the Certificate.
Challenge Password: Valid response password to server challenge.
Optional Organization Name: An optional name for the organization
creating the Certificate.
Self-Signed Certificate Expiration (Days): How many days before the
Certificate expires. The default is 7200.
You are required to select a signature algorithm, a private key passphrase
of at least 4characters, a private key bit length, and the Certificate expir-
ation in days. The remaining fields are optional.
It is recommended that you consult your Certificate Authority for the
required fields in an X509-Certificate request. Safran recommends all fields
be filled out and match the information given to your Certificate Authority.
For example, use all abbreviations, spellings, URLs, and company depart-
ments recognized by the Certificate Authority. This helps to avoid prob-
lems the Certificate Authority might otherwise have reconciling Certificate
request and company record information.
If necessary, consult your web browser vendor’s documentation and Cer-
tificate Authority to see which key bit lengths and signature algorithms
your web browser supports.
Safran recommends that when completing the Common Name field, the
user provide a static IP address, because DHCP-generated IP addresses can
change. If the hostname or IP address changes, the X.509 Certificate must
be regenerated.
It is recommended that the RSA Private Key Bit Length be a power of 2 or
multiple of 2. The key bit length chosen is typically 1024, but can range from
512 to 4096. Long key bit lengths of up to 4096 are not recommended
82
CHAPTER 2 • VersaSync User Manual Rev. 12
2.8 Configuring Network Settings