Self Signed SSL Certificates: Difference between revisions

From Leo's Notes
This page was last edited on 29 March 2015, at 23:16.
No edit summary
No edit summary
Line 1: Line 1:
<htmlet>demo</htmlet>
<htmlet nocache="yes">demo</htmlet>


cd ~
cd ~

Revision as of 23:16, 29 March 2015

<htmlet nocache="yes">demo</htmlet>

cd ~ mkdir ssl openssl genrsa -des3 -out server.key 4096 openssl req -new -key server.key -out server.csr openssl x509 -req -days 365 -in server.csr -signkey server.key -out server.crt openssl rsa -in server.key -out server.key.insecure mv server.key server.key.secure mv server.key.insecure server.key

Step 3: Generating the key, use any pass phrase. Step 4: Creating the certificate signing request Step 5: Signing the certificate signing request Step 6: Making a key that has no pass phrase

Note: Ensure that all keys are not readable to others. chmod 700 the ssl directory and chmod 600 all the keys.

openssl req -new -x509 -key www.example.com.key -out www.example.com.cert -days 3650 -subj /CN=www.example.com