当前位置: 首页 > news >正文

openssl3.2/test/certs - 040 - EC cert with named curve signed by named curve ca

文章目录

    • openssl3.2/test/certs - 040 - EC cert with named curve signed by named curve ca
    • 概述
    • 笔记
    • END

openssl3.2/test/certs - 040 - EC cert with named curve signed by named curve ca

概述

openssl3.2 - 官方demo学习 - test - certs

笔记

/*!
* \file D:\my_dev\my_local_git_prj\study\openSSL\test_certs\040\my_openssl_linux_doc_040.txt
* \note openssl3.2/test/certs - 040 - EC cert with named curve signed by named curve ca
*/// --------------------------------------------------------------------------------
// official bash script
// --------------------------------------------------------------------------------
# openssl3.2/test/certs - 040 - EC cert with named curve signed by named curve ca
./mkcert.sh genee server.example ee-key-ec-named-named ee-cert-ec-named-named ca-key-ec-named ca-cert-ec-named// --------------------------------------------------------------------------------
// openssl cmd line parse
// --------------------------------------------------------------------------------
// cmd 1
openssl genpkey -algorithm rsa -pkeyopt rsa_keygen_bits:2048 -out ee-key-ec-named-named.pem // cmd 2
// cfg_exp_040_cmd2.txt
string_mask=utf8only
[req]
prompt = no
distinguished_name = dn
[dn]
CN = server.exampleopenssl req -new -sha256 -key ee-key-ec-named-named.pem -config cfg_exp_040_cmd2.txt -out req_exp040_cmd2.pem// cmd 3
// cfg_exp040_cmd3.txt
subjectKeyIdentifier = hash
authorityKeyIdentifier = keyid, issuer
basicConstraints = CA:falseextendedKeyUsage = serverAuth
[alts]
subjectAltName = @alts
DNS=server.example
[alts]openssl x509 -req -sha256 -out ee-cert-ec-named-named.pem -extfile cfg_exp040_cmd3.txt -CA ca-cert-ec-named.pem -CAkey ca-key-ec-named.pem -set_serial 2 -days 36525 -in req_exp040_cmd2.pem// --------------------------------------------------------------------------------
// openssl log
// --------------------------------------------------------------------------------
openssl genpkey -algorithm rsa -pkeyopt rsa_keygen_bits:2048 -out ee-key-ec-named-named.pem 
openssl req -new -sha256 -key ee-key-ec-named-named.pem -config /dev/fd/63 -config /dev/fd/63 => /home/lostspeed/openssl/openssl-3.2.0_debian/test/certs/my_openssl_linux_log.txtstring_mask=utf8only
[req]
prompt = no
distinguished_name = dn
[dn]
CN = server.example
openssl x509 -req -sha256 -out ee-cert-ec-named-named.pem -extfile /dev/fd/63 -CA ca-cert-ec-named.pem -CAkey ca-key-ec-named.pem -set_serial 2 -days 36525 -extfile /dev/fd/63 => /home/lostspeed/openssl/openssl-3.2.0_debian/test/certs/my_openssl_linux_log.txtsubjectKeyIdentifier = hash
authorityKeyIdentifier = keyid, issuer
basicConstraints = CA:falseextendedKeyUsage = serverAuth
[alts]
subjectAltName = @alts
DNS=server.example[alts]

END

http://www.lryc.cn/news/287200.html

相关文章:

  • LabVIEW准分子激光器控制系统
  • 热血江湖服务端服务器架设教程
  • 美易平台:美元指数微幅回落
  • 编译和链接---C语言
  • SAP EXCEL上传行数限制问题(ALSM_EXCEL_TO_INTERNAL_TABLE)
  • 3.召回率-机器学习模型性能的常用的评估指标
  • linux安装docker--更具官网教程
  • 云原生安全:风险挑战与安全架构设计策略
  • c语言-文件的读写操作
  • Python处理日期和时间库之arrow使用详解
  • 架构师之路(十四)计算机网络(网络层)
  • Spring Boot开发Spring Security
  • gin介绍及helloworld
  • vue3 自动引入 ref reactive...
  • 软考复习之软件工程篇
  • MySQL(七)MySQL和Oracle、PostgreSQL的区别
  • (2)(2.4) CRSF/ELRS Telemetry
  • 服务器发送http请求
  • Effective Objective-C 学习第二周
  • JS进阶-深入对象(二)
  • 【Gene Expression Prediction】Part2 Enchancer discovery
  • 【UEFI基础】EDK网络框架(UDP4)
  • vivado使用注意事项
  • gin路由篇
  • C++逆向分析--继承的本质
  • ​LeetCode解法汇总2865. 美丽塔 I
  • pinia 的使用方法
  • sky_take_out
  • LC 2865. 美丽塔 I
  • 代理设计模式JDK动态代理CGLIB动态代理原理