tech:openssl_creer_un_certificat_autosigne_create_a_self-signed_ssl_certificate

OpenSSL - Créer un certificat autosigné / create a self-signed ssl certificate

make-ssl-cert generate-default-snakeoil --force-overwrite

Les certs générées sont ici :

  • /etc/ssl/certs/ssl-cert-snakeoil.pem
  • /etc/ssl/private/ssl-cert-snakeoil.key

Ou

sudo openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout /etc/ssl/private/apache-selfsigned.key -out /etc/ssl/certs/apache-selfsigned.crt

ou

FQDN="plop.local"
PORT=9443
 
# create private key for TLS
openssl genrsa -out $FQDN.key 2048
 
# create public certificate for TLS
# openssl req -new -key $FQDN.key -x509 -subj '/CN=localhost' -out $FQDN.cert
openssl req -new -key $FQDN.key -x509 -days 3653 -out $FQDN.crt -subj "/C=FR/ST=FR/L=PLOP/O=myorg/CN=$FQDN"
 
# create pem format key+cert
cat $FQDN.key $FQDN.crt >$FQDN.pem

Source : https://fabianlee.org/2022/10/26/linux-socat-used-as-secure-https-web-server/

tech/openssl_creer_un_certificat_autosigne_create_a_self-signed_ssl_certificate.txt · Dernière modification : de Jean-Baptiste

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki