How To SSL - X.509 v2/32.3 Importable own SSL Certificates |
Date: 21.11.2008 |
| ← 2.2 Self-signed certificates | [ up ] - [ top ] - [ a - z ] - [ Discussion Board ] | 2.4 Free SSL Certs → |
Um ein Zertifikat zu erzeugen, welches in einen Browser (speziell IE) importiert werden kann, ist eine andere Prozedur erforderlich.
openssl genrsa -des3 -out ca.key 4096 openssl req -new -x509 -days 365 -key ca.key -out ca.crt pGATE CA Organizational Unit Name (eg, section) []:infoCopter Common Name (eg, your name or your server's hostname) []:pGATE.net Email Address []:sales@example.org | v openssl genrsa -des3 -out server.key 4096 openssl req -new -key server.key -out server.csr [My Company Ltd]:Reto Hersiczky Organizational Unit Name (eg, section) []: Common Name (eg, your name or your server's hostname) []:quartusopenssl x509 -req -days 365 -in server.csr -CA ca.crt -CAkey ca.key -signkey server.key -set_serial 01 -out server.crtopenssl rsa -in server.key -out server.key.insecure mv -f server.key server.key.secure mv -f server.key.insecure server.key
Eine wirkliche gut beschriebene Anleitung habe ich von hier entnommen.
![]()
![]()
![]()
/usr/local/ssl/misc/CA.pl -newca -- Verify return code: 18 (self signed certificate)
| <- 2.2 Self-signed certificates | [ up ] - [ top ] - [ index ] - [ Discussion Board ] | 2.4 Free SSL Certs -> |
copyright by retoh - created with mytexi