Self Signed SSL Certificates: Difference between revisions
No edit summary |
No edit summary |
||
| Line 1: | Line 1: | ||
<htmlet>demo</htmlet> | <htmlet nocache="yes">demo</htmlet> | ||
cd ~ | cd ~ | ||
Revision as of 23:16, 29 March 2015
<htmlet nocache="yes">demo</htmlet>
cd ~ mkdir ssl openssl genrsa -des3 -out server.key 4096 openssl req -new -key server.key -out server.csr openssl x509 -req -days 365 -in server.csr -signkey server.key -out server.crt openssl rsa -in server.key -out server.key.insecure mv server.key server.key.secure mv server.key.insecure server.key
Step 3: Generating the key, use any pass phrase. Step 4: Creating the certificate signing request Step 5: Signing the certificate signing request Step 6: Making a key that has no pass phrase
Note: Ensure that all keys are not readable to others. chmod 700 the ssl directory and chmod 600 all the keys.
openssl req -new -x509 -key www.example.com.key -out www.example.com.cert -days 3650 -subj /CN=www.example.com