Openssl自签https证书:修订间差异
来自三线的随记
(创建页面,内容为“<nowiki>*</nowiki>随记 openssl genrsa -des3 -out server.key 2048 openssl req -new -key server.key -out server.csr openssl rsa -in server.key.org -out server.key…”) |
小无编辑摘要 |
||
| (未显示同一用户的8个中间版本) | |||
| 第1行: | 第1行: | ||
< | 使用 Openssl自签https证书 | ||
=== SSL is TLS === | |||
SSL is the old name. It is called TLS these days. | |||
<br /> | |||
=== SSL Certificate Verification === | |||
https://curl.se/docs/sslcerts.html | |||
<br /> | |||
一些参考文章: | |||
https://support.azure.cn/docs/azure-operations-guide/application-gateway/aog-application-gateway-howto-create-self-signed-cert-via-openssl.html | |||
===随记=== | |||
openssl genrsa -des3 -out server.key 2048 | openssl genrsa -des3 -out server.key 2048 | ||
openssl req -new -key server.key -out server.csr | openssl req -new -key server.key -out server.csr | ||
| 第7行: | 第21行: | ||
openssl rsa -in server.key.org -out server.key | openssl rsa -in server.key.org -out server.key | ||
为去除私钥密码 | 为去除私钥密码 | ||
<br /> | |||
===* 命令作用拆分(doing)=== | |||
生成 基于3des 算法长度为2048位的 RSA格式私钥<blockquote>Generation of RSA Private Key. Superceded by genpkey.</blockquote> | |||
openssl genrsa -des3 -out server.key 2048 | |||
其中会提示需要为私钥设置密码 | |||
<br /> | <br /> | ||
crt 转换 pem | |||
{{DEFAULTSORT: | openssl x509 -in xxxxx.com.crt -out xxxxx.com.pem -outform PEM | ||
{{DEFAULTSORT:openssl自签https证书}} | |||
2025年4月24日 (四) 15:48的最新版本
使用 Openssl自签https证书
SSL is TLS
SSL is the old name. It is called TLS these days.
SSL Certificate Verification
https://curl.se/docs/sslcerts.html
一些参考文章:
随记
openssl genrsa -des3 -out server.key 2048 openssl req -new -key server.key -out server.csr openssl rsa -in server.key.org -out server.key openssl x509 -req -days 365 -in server.csr -signkey server.key -out server.crt
其中
openssl rsa -in server.key.org -out server.key
为去除私钥密码
* 命令作用拆分(doing)
生成 基于3des 算法长度为2048位的 RSA格式私钥
Generation of RSA Private Key. Superceded by genpkey.
openssl genrsa -des3 -out server.key 2048
其中会提示需要为私钥设置密码
crt 转换 pem
openssl x509 -in xxxxx.com.crt -out xxxxx.com.pem -outform PEM