FAQs & Troubleshooting



FAQs & Troubleshooting

FAQs & Troubleshooting


Not your product?

Date: 09/11/2018 ID: faq00100422_003

Create a Certificate Signing Request (CSR)

A Certificate Signing Request (CSR) is a request sent to a Certificate Authority (CA) to authenticate the credentials contained within the certificate.

We recommend installing a Root Certificate from the CA on your computer before creating the CSR.

  1. Start your web browser.
  2. Type "https://machine's IP address" in your browser's address bar (where "machine's IP address" is the machine's IP address).
    For example:
    • If you are using a Domain Name System or enable a NetBIOS name, you can type another name, such as "SharedPrinter" instead of the IP address.
      - For example:
      If you enable a NetBIOS name, you can also use the node name.
      - For example:
      The NetBIOS name can be found in the Network Configuration Report.
    • For Mac, access Web Based Management by clicking the machine's icon on the Status Monitor screen.
  3. If the machine prompts you for a password, type it, and then click Right Arrow.
  4. Click the Network tab.
  5. Click the Security tab.
  6. Click the Certificate menu in the left navigation bar.
  7. Click Create CSR.
  8. Type a Common Name (required) and add other information about your Organization (optional).
    • Your company details are required so that a CA can confirm your identity and verify it to the outside world.
    • The length of the Common Name must be less than 64 bytes. Enter an identifier, such as an IP address, node name, or domain name to use when accessing this printer through SSL/TLS communication. The node name is displayed by default. The Common Name is required.
    • A warning will appear if you type a different name in the URL than the Common Name that was used for the certificate.
    • The length of the Organization, the Organization Unit, the City/Locality and the State/Province must be less than 64 bytes.
    • The Country/Region should be a two character ISO 3166 country code.
    • If you are configuring an X.509v3 certificate extension, select the Configure extended partition check box, and then select Auto (Register IPv4) or Manual.
  9. Select your setting from the Public Key Algorithm drop-down list. The default setting is RSA(2048bit).
  10. Select your setting from the Digest Algorithm drop-down list. The default setting is SHA256.
  11. Click Submit.
    The CSR appears on your screen. Save the CSR as a file or copy and paste it into an online CSR form offered by a Certificate Authority.
  12. Click Save.
  • Follow your CA's policy regarding the method to send a CSR to your CA.
  • If you are using the Enterprise root CA of Windows Server 2008/2012/2012 R2/2016, we recommend using the Web Server for the certificate template to securely create the Client Certificate.
    (For models with IEEE 802.1x authentication)
    If you are creating a Client Certificate for an IEEE 802.1x environment with EAP-TLS authentication, we recommend using User for the certificate template.
    > Click here for more information on prepare for SSL communication in the Brother Print Server.

Related FAQs

Related Models

DCP-J1100DW, DCP-L3551CDW, HL-L3210CW, HL-L3230CDW, MFC-J1300DW, MFC-J5945DW, MFC-J6945DW, MFC-L3710CW, MFC-L3770CDW

If you need further assistance, please contact Brother customer service:

Content Feedback

To help us improve our support, please provide your feedback below.
Step 1: How does the information on this page help you?
Step 2: €Are there any comments you would like to add?

Please note this form is used for feedback only.