[Sussex] SSL Question.....

Richie Jarvis richie at helkit.com
Thu Mar 16 22:53:30 UTC 2006


Hi Folks,

Got an SSL question for you all...
We have a situation @ work where we different phone manufacturers are 
using different root CA's to sign their certificates (their own root 
ca's, not common trusted ones.)  Obviously, they are pre-loading their 
own root cert onto the device.
Our J2EE app runs inside weblogic, and talks to these devices via either 
HTTP or HTTPS.  Up until now, only one manufacturer has demanded SSL, 
but now a couple are, and hence the issue.

Now, what I need to be able to do is generate a cert which is signed by 
all the root CA's, so that it doesn't matter which manufacturers device 
the cert goes to, it is trusted.
Is this possible?  To have a cert which is signed by multiple root CA's?

If not, the only way I can think of to do it is to have different URL's 
(https://a.server.net, https://b.server.net,....) for each different 
manufacturer, with a different cert signed by each different root CA - 
surely it is not that complicated, or is it??

Cheers,

Richie

-- 
Richie Jarvis
Email: richie at helkit.com
Website: http://www.helkit.com
Phone: 0207 100 6879 or 3808676 at sipgate.co.uk





More information about the Sussex mailing list