当前位置: 首页 > news >正文

openssl3.2/test/certs - 060 - any.bad.com is excluded by CA2.

文章目录

    • openssl3.2/test/certs - 060 - any.bad.com is excluded by CA2.
    • 概述
    • 笔记
    • END

openssl3.2/test/certs - 060 - any.bad.com is excluded by CA2.

概述

openssl3.2 - 官方demo学习 - test - certs

笔记

/*!
* \file D:\my_dev\my_local_git_prj\study\openSSL\test_certs\060\my_openssl_linux_doc_060.txt
* \note openssl3.2/test/certs - 060 - any.bad.com is excluded by CA2.
*/// --------------------------------------------------------------------------------
// official bash script
// --------------------------------------------------------------------------------
#! /bin/bash# \file setup060.sh# openssl3.2/test/certs - 060 - any.bad.com is excluded by CA2../mkcert.sh req badalt2-key 'O = Bad NC Test Certificate 2' | \./mkcert.sh geneealt badalt2-key badalt2-cert ncca2-key ncca2-cert \"DNS.1 = www.good.org" "DNS.2 = any.bad.com" \"email.1 = good@good.org" "email.2 = any@good.com"// --------------------------------------------------------------------------------
// openssl cmd line parse
// --------------------------------------------------------------------------------
// cmd 1
openssl genpkey -algorithm rsa -pkeyopt rsa_keygen_bits:2048 -out badalt2-key.pem // cmd 3
// cfg_exp060_cmd3.txt
string_mask=utf8only
[req]
prompt = no
distinguished_name = dn
[dn]
O = Bad NC Test Certificate 2openssl req -new -sha256 -key badalt2-key.pem -config cfg_exp060_cmd3.txt -out req_exp060_cmd3.pem// cmd 2
// cfg_exp06_cmd2.txt
subjectKeyIdentifier = hash
authorityKeyIdentifier = keyid
basicConstraints = CA:falsesubjectAltName = @alts
[alts]
DNS.1 = www.good.org
DNS.2 = any.bad.com
email.1 = good@good.org
email.2 = any@good.comopenssl x509 -req -sha256 -out badalt2-cert.pem -extfile cfg_exp06_cmd2.txt -CA ncca2-cert.pem -CAkey ncca2-key.pem -set_serial 2 -days 36525 -in req_exp060_cmd3.pem// --------------------------------------------------------------------------------
// openssl log
// --------------------------------------------------------------------------------openssl genpkey -algorithm rsa -pkeyopt rsa_keygen_bits:2048 -out badalt2-key.pem 
openssl x509 -req -sha256 -out badalt2-cert.pem -extfile /dev/fd/63 -CA ncca2-cert.pem -CAkey ncca2-key.pem -set_serial 2 -days 36525 -extfile /dev/fd/63 => /home/lostspeed/openssl/openssl-3.2.0_debian/test/certs/my_openssl_linux_log.txtsubjectKeyIdentifier = hash
authorityKeyIdentifier = keyid
basicConstraints = CA:falsesubjectAltName = @alts
[alts]
DNS.1 = www.good.org
DNS.2 = any.bad.com
email.1 = good@good.org
email.2 = any@good.com
openssl req -new -sha256 -key badalt2-key.pem -config /dev/fd/63 -config /dev/fd/63 => /home/lostspeed/openssl/openssl-3.2.0_debian/test/certs/my_openssl_linux_log.txtstring_mask=utf8only
[req]
prompt = no
distinguished_name = dn
[dn]
O = Bad NC Test Certificate 2

END

http://www.lryc.cn/news/288080.html

相关文章:

  • SpringBoot整理-数据库操作
  • IP被封怎么办?访问网站时IP被阻止?解决IP禁令全方法
  • 利用aiohttp异步爬虫实现网站数据高效抓取
  • navicat连接postgresql、人大金仓等数据库报错
  • AUTOSAR看门狗篇 -看门狗驱动(Wdg)
  • 数字图像处理:图像内插
  • Cantor表(刷题)(C语言)
  • linux install nvm
  • HTML 炫酷进度条
  • Windows10上使Git Bash支持rsync命令操作步骤
  • rust for循环里的所有权 - into_iter / iter / iter_mut
  • GitHub README-Template.md - README.md 模板
  • 【文本到上下文 #6】Word2Vec、GloVe 和 FastText
  • yolov5 opencv dnn部署自己的模型
  • Cortex-M4处理器 电源管理
  • Linux 驱动开发基础知识——编写LED驱动程序(三)
  • YOLOv8 视频识别
  • elementplus Dialog 对话框设置距离页面顶部的距离
  • 便捷接口调测:API 开发工具大比拼 | 开源专题 No.62
  • openssl3.2/test/certs - 008 - root-nonca trust variants: +serverAuth +anyEKU
  • cg插画设计行业怎么样,如何学习插画设计
  • 1.25学习总结
  • C语言每日一题(48)回文链表
  • 提高代码效率的5个Python内存优化技巧
  • 基于一款热门大屏可视化设计器使用教程
  • 梯度下降法、模拟训练、拟合二次曲线、最小二乘法、MSELoss、拟合:f(x)=ax^2+bx+c
  • Web3.0投票如何做到公平公正且不泄露个人隐私
  • 灰度图像的自动阈值分割
  • 利用Maven获取jar包
  • 将vue组件发布成npm包