Project

General

Profile

CACert » History » Version 2

Laurent GUERBY, 08/28/2013 05:43 PM

1 2 Laurent GUERBY
{{>toc}}
2 2 Laurent GUERBY
3 1 Raphaël Durand
h1. CACert
4 1 Raphaël Durand
5 2 Laurent GUERBY
h2. Verificateurs
6 1 Raphaël Durand
7 2 Laurent GUERBY
https://www.ssllabs.com/ssltest/index.html
8 2 Laurent GUERBY
9 2 Laurent GUERBY
h2. openssl
10 1 Raphaël Durand
11 1 Raphaël Durand
openssl req -new –nodes -keyout server.key -out server.csr -config /etc/ssl/req.conf
12 1 Raphaël Durand
13 1 Raphaël Durand
14 1 Raphaël Durand
/etc/ssl/cacert.conf
15 1 Raphaël Durand
[ req ]
16 1 Raphaël Durand
default_bits        = 1024
17 1 Raphaël Durand
default_keyfile     = privkey.pem
18 1 Raphaël Durand
distinguished_name  = req_distinguished_name
19 1 Raphaël Durand
req_extensions     = req_ext # The extentions to add to the self signed cert
20 1 Raphaël Durand
21 1 Raphaël Durand
[ req_distinguished_name ]
22 1 Raphaël Durand
commonName            = Common Name (eg, YOUR name)
23 1 Raphaël Durand
commonName_max        = 64
24 1 Raphaël Durand
25 1 Raphaël Durand
[ req_ext ]
26 1 Raphaël Durand
subjectAltName          = @alt_names
27 1 Raphaël Durand
28 1 Raphaël Durand
[alt_names]
29 1 Raphaël Durand
DNS.1   = mail.exemple.com
30 1 Raphaël Durand
DNS.2   = www.exemple.com