How to create an Extended Validation (EV) compatible Root CA?
Originally Published: 2008-06-09
Article Number
Applies To
Issue
The profiles "EV SSL Root CA" and "EV SSL Subordinate CA" are not in the list of extension profiles to choose from when creating a CA
Resolution
To correct this, you must edit the Extension Profiles for those selections.
1. Access the RCM Administrative UI.
2. Go to the "System Configuration" workbench -> Extension Profiles
3. Select the profile named "EV SSL Root CA", click on Edit.
4. Change the Profile Type from "End entity" to "CA", then click Save.
Do the same thing with the profile "EV SSL Sub-ordinate CA".
Now when you go to create a new CA, at the jurisdiction configuration page during it's creation, in the Sections drop down, select Extension Profiles.
Select all profiles in the list (or only those you will need), click on Save and continue.
Select the extensions profile "EV SSL Root CA" or "EV SSL Subordinate CA" when creating your CA.
Related Articles
RSA Reminder End of Extended Support for RSA-Provided Oracle Database 12c 27Number of Views RSA Governance & Lifecycle Recipes: Extending Objects in the AVUSER Schema with Custom Attributes 79Number of Views FIM Weblogic throws exception with new SSL cert - java.io.IOException: Cannot convert identity certificate 60Number of Views How to uninstall RSA ACE/Server Patch 16 7Number of Views Web Tiers 4Number of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) How to delete old or pending certificate signing requests for RSA Authentication Manager console or virtual host replaceme… Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory How to import CA signed console cert from AM 8.x primary into a new primary with same FQDN How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device
Don't see what you're looking for?