CA Process and new OU

Hi all,

I have a running CA-Process, with users and server registration there is no problem.

When creating a new ou1 certifier than the ID will be created and the CA-Process certify the request, than this sign certificate will not pushed into the OU1-ID. With a user it will happen during accessing the server, but with a OU-ID, what need to be done there?

Anyone had done that before, or is the only way to create a new OU, when using a cert.id? When, why @IBM/Lotus is the request using the CA-Process is not forbidden?

Thank you for some feedback.

Ulrich