6 ms·
Any luck?
by Harible 7y ago
Any luck?
- Gra8888 7y agoNO, It's harible..
- ranro 7y agoI have an idea, but don't have the time to check :-/ Using online CSR generator I succeeded to sign a CA certificate.. So maybe we can use the signed certificate to sign another certificate for admin user on behalf of the root certificate?
- ranro 7y agoupdate: it worked :-)
- deleted 7y ago[deleted]
- yossi9 7y agoBut how did u send csr as CA? I guess they must provide you certificate that includes CA=True ? (in order to continue the chain)
- ranro 7y agoThe csr is created in the client and sent to server to be signed... you can replace it
- yossi9 7y agotnx. worked! now did u pass the telnet ?
- AceRoll 7y agoCan you post how you did it?
- rooternull 7y agoI have the csr and the private key of the administrator but I don't know how to sign it on behalf of the root certificate, any idea?
- ranro 7y agonot yet... didn't have the time :-/ but it seems much easier than the previous one...
- Gra8888 7y agoAs I understood grab with Openssl cert root https://missilesys.com/ https://missilesys.com/ and BURP with new account http://dev.missilesys.com/ http://dev.missilesys.com/ I try soon thk U
- zuburking 7y agoTry sending a GET request to "/" :P
- zuburking 7y agoi'm still getting User Exists though...
- AceRoll 7y agoCan you explain step by step how you have done it? :) If you change to CSR and key in the request to self-generated, it still says username already exists. on the other side, if I create my own certificate using custom CSR and key, I still cannot sign it with website CA (taken from original p12 file) since I do not have the private key.
- matan111 7y agoCan you explain what you did?
- nema1 7y agoHi, Can anyone help me with this? I know that if you go to dev.missilesys.com, and download the cert you see that it is signed by International Weapons Export Inc. so i created a root ca with the same name than i created a csr with common name administrator than i created a cert, i used the csr and the root ca i generated after that i created a pfx, it's the same as p12 afaik, and tried to login i'm getting error 400 i wanted to use the original ca from the web site, i decoded the file p12, but i don't have the private key anyone can help me? thanks
- zuburking 7y agohow could u do it? from my understanding of pcsk12 its a bundle of multiple certificates.
- ranro 7y agoTheres a chain of trust and if you have a signed CA certificate from a root you can sign on behalf of the root
- AceRoll 7y agoTell me where I get wrong. 1. I created CSR with CA:TRUE and send it to the server. 2. The server signed it and returned me a certificate. 3. I use the given certificated with CA:TRUE from the server and sign a new certificate with the username administrator. 4. I install the certificate on my browser and should get in. All of the above sounds great. however, it is still(!!!) not working for me. Where am I going wrong