官术网_书友最值得收藏!

Getting ready

To install an SSL, there are three components we need to start with. The first is Certificate Signing Request (CSR). This defines the information which will be contained within the certificate and includes things such as the organization name and domain name. The CSR is then sent to a CA or used to generate a self-signed certificate.

To make it easy for this recipe, we'll use a self-signed certificate. We can easily generate the CSR and then the private key and public certificate with one command. For example, here's how to generate a CSR with a 2048 bit key and 600 day expiry:

openssl req -x509 -new -newkey rsa:2048 -nodes -keyout private.key -out public.pem -days 600  

This example will ask a series of questions for the CSR and then automatically generate the private key (private.key) and the public certificate (public.pem). Consider the following example:

Self-signed certificates aren't validated by browsers and are not intended for production. They should be used for internal and testing purposes only.
主站蜘蛛池模板: 迁西县| 隆安县| 永新县| 祁阳县| 孝昌县| 自治县| 博罗县| 泗阳县| 镇巴县| 安陆市| 虎林市| 沽源县| 旬阳县| 逊克县| 嘉义县| 诏安县| 和田县| 扬中市| 丹江口市| 桦川县| 余姚市| 田东县| 西乡县| 美姑县| 黄大仙区| 青岛市| 洪湖市| 西昌市| 永州市| 嘉禾县| 文成县| 广昌县| 黑河市| 墨江| 中阳县| 河间市| 富平县| 望谟县| 沁水县| 阿坝| 太保市|