官术网_书友最值得收藏!

Getting ready

To install an SSL, there are three components we need to start with. The first is Certificate Signing Request (CSR). This defines the information which will be contained within the certificate and includes things such as the organization name and domain name. The CSR is then sent to a CA or used to generate a self-signed certificate.

To make it easy for this recipe, we'll use a self-signed certificate. We can easily generate the CSR and then the private key and public certificate with one command. For example, here's how to generate a CSR with a 2048 bit key and 600 day expiry:

openssl req -x509 -new -newkey rsa:2048 -nodes -keyout private.key -out public.pem -days 600  

This example will ask a series of questions for the CSR and then automatically generate the private key (private.key) and the public certificate (public.pem). Consider the following example:

Self-signed certificates aren't validated by browsers and are not intended for production. They should be used for internal and testing purposes only.
主站蜘蛛池模板: 临沭县| 衡阳县| 嘉禾县| 成都市| 黄龙县| 福安市| 汨罗市| 方正县| 金平| 吴堡县| 青岛市| 宝坻区| 林周县| 盘山县| 从化市| 安西县| 隆尧县| 镶黄旗| 驻马店市| 改则县| 西丰县| 泰和县| 蚌埠市| 安徽省| 巴彦县| 清原| 和硕县| 永和县| 博白县| 巫山县| 南乐县| 五大连池市| 大冶市| 金溪县| 安庆市| 且末县| 南充市| 沾益县| 丹江口市| 阳山县| 南丰县|