SSL Certificate Creation
From Antiflux Wiki
(Difference between revisions)
Line 3: | Line 3: | ||
<li><code>openssl genrsa -out /etc/ssl/private/hostname.key 1024</code></li> | <li><code>openssl genrsa -out /etc/ssl/private/hostname.key 1024</code></li> | ||
<li><code>openssl req -new -key /etc/ssl/private/log.antiflux.org.key -out /etc/ssl/antiflux/hostname.csr</code></li> | <li><code>openssl req -new -key /etc/ssl/private/log.antiflux.org.key -out /etc/ssl/antiflux/hostname.csr</code></li> | ||
- | <li><code>cd /etc/ssl/ | + | <li><code>cd /etc/ssl/antiflux</code></li> |
<li><code>make sign</code></li> | <li><code>make sign</code></li> | ||
<li><code>mv hostname.cert /etc/ssl/certs/hostname.crt</code></li> | <li><code>mv hostname.cert /etc/ssl/certs/hostname.crt</code></li> |
Revision as of 15:01, 16 May 2005
To generate a certificate for "hostname" signed with our CA key:
openssl genrsa -out /etc/ssl/private/hostname.key 1024
openssl req -new -key /etc/ssl/private/log.antiflux.org.key -out /etc/ssl/antiflux/hostname.csr
cd /etc/ssl/antiflux
make sign
mv hostname.cert /etc/ssl/certs/hostname.crt
Note: "make sign" will delete the CSR, so make a copy ahead of time if you're going to want it later.