Linux system openssl production key certificate file

#生产2048位私钥文件
openssl genrsa -out private.key 2048  

#签名证书
openssl req -new -key private.key -out private.csr -passin pass:12kmx34.567A8*@9 -subj "/C=CN/ST=SH/L=Chengdu/O=organization/OU=saicmotor/CN=192.168.1.167"

#正确--生产CA,days指定证书有效期3650天
openssl x509 -req -days 3650 -in private.csr -signkey private.key -out public.crt

#正确,将服务端证书和私钥打包成一个pem文件(haproxy使用)
cat haproxy.key haproxy.crt | tee server_ca.pem

Guess you like

Origin blog.csdn.net/u011511086/article/details/112239196