picture of tbs certificates
picture of tbs certificates
Our products range

Generate a CSR for Juniper Networks Secure Access

This procedure is extracted from the online documentation 'AdminGuide V6.0'.

Warning: you need to upgrade to a version SA 6.5 or higher to generate a 2048-bit CSR. If you can't, you'll have to use OpenSSL to generate 2048-bit key and CSR and use a PKCS12 to import.

1- Creation of a certificate request(CSR)
For a new certificate

Connect to the Management Console

  1. Select
    System > Configuration > Certificates > Device Certificates.

  2. Click on New CSR.

  3. Enter the requested information, then click on Create CSR.
    (if you are given the choice for the key length, select 2048-bit at least)

    • CN: Common name / domain name / server name:
      Indicate here your SSL server name, such as "", "" or "". No IP address. No spaces nor blank characters.

    • C: Country:
      indicate FR if your company is in France, BE for Belgium, etc, in uppercase preferably.

    • ST: State:
      in France indicate the name of the department where your company headquarters are based (not the number).

    • L: City:
      indicate the city in which your company headquarters are based.

    • O: Organization:
      indicate the corporate name of your company (no trade name or acronym), in uppercase preferably.

    • OU: Organisational unit / Department / Branch:
      We advise not to fill in this field or to enter a generic term such as "IT Department".

2- Finalize the order process

  • Use the appropriate link to place your order on our website. See Access an order form
  • Copy/paste the CSR including the BEGIN and END lines.