Various details about OPENSSL
REM generates CA private key
Openssl genrsa-out ca.key 16384
REM generates the server private key
Openssl genrsa-out server.key 16384
REM issues CA certificates
Openssl req-new-x509-sha512-days 36600-key ca.key-out ca.crt-config D:\ PHPX64\ openssl\ program\ bin\ openssl.cfg-subj "/ C=CN/ST=SC/L=ChengDu/O=elsesky.bid/OU=elsesky.bid/CN=ca.elsesky.bid"-extensions v3_req
REM generates server request (note: modify the configuration of [v3_req] in openssl.cfg first, which is consistent with the actual situation)
Openssl req-new-out server.csr-key server.key-subj "/ C=CN/ST=SC/L=ChengDu/O=elsesky.bid/OU=elsesky.bid/CN=*.elsesky.bid"-config D:\ PHPX64\ openssl\ program\ bin\ openssl.cfg-sha512
The REM X509 is issued with multiple domains:
Openssl x509-req-in server.csr-out server.crt-CA ca.crt-CAkey ca.key-sha512-days 366000-extensions v3_req-extfile D:\ PHPX64\ openssl\ program\ bin\ openssl.cfg-CAcreateserial
About how OPENSSL can't find the configuration file:
Add the following to the system global environment variable:
OPENSSL_CONF:c:\ openssl\ openssl.cfg