Ca-certificates
Revision as of 14:19, 21 February 2024 by Ted (talk | contribs) (→^ Where To Store CA Certificates)
The printable version is no longer supported and may have rendering errors. Please update your browser bookmarks and please use the default browser print function instead.
CA Certificates
^ Overview
stub section
Locate notes and refs here on CA cert creation and configuration.
^ To Configure CA Certificates
Command at third reference seems much like cert generating command given at LetsEncrypt tutorial at first reference link:
openssl req -x509 -out localhost.crt -keyout localhost.key \ -newkey rsa:2048 -nodes -sha256 \ -subj '/CN=localhost' -extensions EXT -config <( \ printf "[dn]\nCN=localhost\n[req]\ndistinguished_name = dn\n[EXT]\nsubjectAltName=DNS:localhost\nkeyUsage=digitalSignature\nextendedKeyUsage=serverAuth")
And from LetsEncrypt tutorial:
openssl req -x509 -out localhost.crt -keyout localhost.key \ -newkey rsa:2048 -nodes -sha256 \ -subj '/CN=localhost' -extensions EXT -config <( \ printf "[dn]\nCN=localhost\n[req]\ndistinguished_name = dn\n[EXT]\nsubjectAltName=DNS:localhost\nkeyUsage=digitalSignature\nextendedKeyUsage=serverAuth")
^ Where To Store CA Certificates
It may be necessary to create a directory for CA certificates for localhost, per the instructions in this Stack Exchange forum post: