======================
1) create ssl rsakey /nsconfig/ssl/test-ca.key 1024
2) create ssl certreq /nsconfig/ssl/test-ca.csr ?keyFile /nsconfig/ssl/test-ca.key
Here we need to fill up the following details
Country Name (2 letter ISO code) ---XX
State or Province Name (full name) ----xxxxx
Locality Name (eg, city) -----xxxxx
Organization Name (eg, company)---- xxxxx
Organization Unit Name (eg, section) :
Common Name (eg, Domain Name) -----xxxxx
Email Address :----
Once we create the certificate signing request
3) create ssl cert /nsconfig/ssl/test-ca.cer /nsconfig/ssl/test-ca.csr ROOT_CERT -keyfile /nsconfig/ssl/test-ca.key
4) create ssl rsakey /nsconfig/ssl/test-server.key 1024
5) create ssl certreq /nsconfig/ssl/test-server.csr keyFile /nsconfig/ssl/test-server.key
Here we need to fill up the following details
Country Name (2 letter ISO code) ---XX
State or Province Name (full name) ----xxxxx
Locality Name (eg, city) -----xxxxx
Organization Name (eg, company)---- xxxxx
Organization Unit Name (eg, section) :
Common Name (eg, Domain Name) -----xxxxx
Email Address :----
Once we create the certificate signing request
6) shell
root@ns# echo '01' GT /nsconfig/ssl/serial.txt
root@ns# exit
logout
7) create ssl cert /nsconfig/ssl/test-server.cer /nsconfig/ssl/test-server.csr SRVR_CERT -CAcert /nsconfig/ssl/test-ca.cer -CAkey /nsconfig/ssl/test-ca.key -CAserial /nsconfig/ssl/serial.txt
8) add ssl certkey test-certkey -cert /nsconfig/ssl/test-server.cer -key /nsconfig/ssl/test-server.key
9) bind ssl vserver
Post a Comment