CSR Generation Standardization

  • A process must be defined across the enterprise to generate CSR that aligns with the security standards and to store keys securely.
  • Harden parameters such as Country and Organization in accordance with organizational requirements.
  • Access to keys should be restricted to authorized personnel.
  • Key Generation, Certificate Request, and Approval processes should be well defined.