OpenSSL Generating a Certificate Signing Request: Difference between revisions

From UNIX Systems Administration
Jump to navigation Jump to search
No edit summary
No edit summary
Line 1: Line 1:
== Generate the Certificate Signing Request (CSR) ==
== Generate the Certificate Signing Request (CSR) ==
=== Apache with mod_ssl Enabled ===
=== Apache with mod_ssl Enabled ===
# If required follow the [[Generating a Private SSL Key]] procedure.
# If required follow the [[OpenSSL Generating a Private Key]] procedure.
# For Apache purposes, use the key with no pass phrase to generate the CSR file.
# For Apache purposes, use the key with no pass phrase to generate the CSR file.
# Generate the CSR from the private key using openssl.
# Generate the CSR from the private key using openssl.

Revision as of 18:30, 21 February 2013

Generate the Certificate Signing Request (CSR)

Apache with mod_ssl Enabled

  1. If required follow the OpenSSL Generating a Private Key procedure.
  2. For Apache purposes, use the key with no pass phrase to generate the CSR file.
  3. Generate the CSR from the private key using openssl.
    1. # openssl req -new -key <key_name>.key -out <csr_name>.csr
  4. Enter the information as required by the prompts.
  5. Verify the checksum of the key, this will be used to verify the CSR and the self signed-certificate.
    1. # openssl req -noout -modulus -in <csr_name>.csr | openssl md5

Further Reading

  1. How to Generate SSL key, CSR, and Self Signed Certificate for Apache