Thursday, February 14, 2019

implement own CA for own use

parking here: https://deliciousbrains.com/ssl-certificate-authority-for-local-https-development/

openssl genrsa -des3 -out myCA.key 2048
 
openssl req -x509 -new -nodes -key myCA.key -sha256 -days 1825 -out myCA.pem
 

Creating CA-Signed Certificates for Your Dev Sites

Now that we’re a CA on all our devices, we can sign certificates for any new dev sites that need HTTPS. First, we create a private key:

openssl genrsa -out dev.mergebot.com.key 2048 
 
Then we create a CSR:
openssl req -new -key dev.mergebot.com.key -out dev.mergebot.com.csr 


create the certificate:
openssl x509 -req -in dev.mergebot.com.csr -CA myCA.pem -CAkey myCA.key -CAcreateserial \
-out dev.mergebot.com.crt -days 1825 -sha256 -extfile dev.mergebot.com.ext 
 
 

No comments:

Related Posts Plugin for WordPress, Blogger...