Get the App
SLTechnology News&Howtos  ›  Network Security  › 

Various details about OPENSSL

Shulou Source: shulou.com Published: 2022-06-01 06:07:09 10月01日 Update

REM generates CA private key

Openssl genrsa-out ca.key 16384

REM generates the server private key

Openssl genrsa-out server.key 16384

REM issues CA certificates

Openssl req-new-x509-sha512-days 36600-key ca.key-out ca.crt-config D:\ PHPX64\ openssl\ program\ bin\ openssl.cfg-subj "/ C=CN/ST=SC/L=ChengDu/O=elsesky.bid/OU=elsesky.bid/CN=ca.elsesky.bid"-extensions v3_req

REM generates server request (note: modify the configuration of [v3_req] in openssl.cfg first, which is consistent with the actual situation)

Openssl req-new-out server.csr-key server.key-subj "/ C=CN/ST=SC/L=ChengDu/O=elsesky.bid/OU=elsesky.bid/CN=*.elsesky.bid"-config D:\ PHPX64\ openssl\ program\ bin\ openssl.cfg-sha512

The REM X509 is issued with multiple domains:

Openssl x509-req-in server.csr-out server.crt-CA ca.crt-CAkey ca.key-sha512-days 366000-extensions v3_req-extfile D:\ PHPX64\ openssl\ program\ bin\ openssl.cfg-CAcreateserial

About how OPENSSL can't find the configuration file:

Add the following to the system global environment variable:

OPENSSL_CONF:c:\ openssl\ openssl.cfg

Tags: Build server service configuration consistency global content variables actual situation file method method environment system certificate processing details Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno vpn Microsoft Shulou Information Xiaomi MariaDB