Difference between revisions of "Ssl"
From Wasya Wiki
(→generate rsa public private key) |
(→for namecheap stuff) |
||
Line 11: | Line 11: | ||
Don't forget to chmod +x, the user is www-data, verify with https://www.sslshopper.com/ssl-checker.html#hostname=https://wasya.co/ | Don't forget to chmod +x, the user is www-data, verify with https://www.sslshopper.com/ssl-checker.html#hostname=https://wasya.co/ | ||
+ | |||
+ | ==== or ==== | ||
+ | From: https://www.namecheap.com/support/knowledgebase/article.aspx/9446/14/generating-csr-on-apache--opensslmodsslnginx--heroku/ | ||
== Another workflow (local apache) == | == Another workflow (local apache) == |
Revision as of 12:51, 24 March 2020
Contents
for namecheap stuff
From: https://www.namecheap.com/support/knowledgebase/article.aspx/9446/0/apache-opensslmodsslnginx
openssl req -new -newkey rsa:2048 -nodes -keyout server.key -out server.csr
SSLEngine on SSLCertificateFile /etc/apache2/ssl/static.piousbox.com/static_piousbox_com.crt SSLCertificateKeyFile /etc/apache2/ssl/static.piousbox.com/server.key SSLCACertificateFile /etc/apache2/ssl/static.piousbox.com/static_piousbox_com.ca-bundle
Don't forget to chmod +x, the user is www-data, verify with https://www.sslshopper.com/ssl-checker.html#hostname=https://wasya.co/
or
Another workflow (local apache)
openssl genrsa -des3 -out rootCA.key 2048 openssl req -x509 -new -nodes -key rootCA.key -sha256 -days 1024 -out rootCA.pem
generate rsa public private key
openssl genrsa -out privkey.pem 2048 openssl rsa -in private.pem -outform PEM -pubout -out public.pem