>> In normal circumstances you cannot apply for a NEW certificate if it
>> has the same DN as one that already exists and is unexpired - you'd
>> have to revoke (or at least get suspended) your old one first.
>>
>> This will be fine though - just apply for a new certificate with the
>> same CN
>
> I think this is the bit where there's an uncertainty - _how_ do we apply for a new cert with the same
> name, since (as you say) we can't do that?
I said "in normal circumstances" you can't do that, but since you are effectively applying for a different DN (since the emailAddress component won't be there) then it should work.
Try it :-)
Cheers
JK
--
Scanned by iCritical.
|