Ben's notes

Linux, Unix, network, radio...

User Tools

Site Tools


centos_7_tls_certificates

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
Next revisionBoth sides next revision
centos_7_tls_certificates [2015/04/05 13:30] – [Server key and certificate] admincentos_7_tls_certificates [2015/04/05 13:34] – [Troubleshooting] admin
Line 16: Line 16:
  
 Common name: <your server's FQDN></code> Common name: <your server's FQDN></code>
-  * Sign server certificate, valid for years:<code>openssl x509 -req -CA ca.crt -CAkey ca.key -days 1825 -extensions usr_cert -sha256 -set_serial 01 -in server.csr -out server.crt</code>+  * Sign server certificate, valid for years:<code>openssl x509 -req -CA ca.crt -CAkey ca.key -days 1825 -extensions usr_cert -sha256 -set_serial 01 -in server.csr -out server.crt</code>
  
 =====Add CA certificate to trust store===== =====Add CA certificate to trust store=====
Line 29: Line 29:
 Check for:     Verify return code: 18 (self signed certificate) Check for:     Verify return code: 18 (self signed certificate)
 or             Verify return code: 0 (ok) </code> or             Verify return code: 0 (ok) </code>
 +  * Lookup certificate details:<code>openssl x509 -in server.crt -noout -text</code>
centos_7_tls_certificates.txt · Last modified: 2021/10/09 15:14 by 127.0.0.1