- $ openssl req -nodes -newkey rsa:2048 -keyout my.key -out my-request.csr
yourDomainName.crt
PositiveSSLCA2.crt
AddTrustExternalCARoot.crt
- $ cat PositiveSSLCA2.crt AddTrustExternalCARoot.crt > yourDomainName.ca-bundle.crt
- SSLEngine on
- SSLCertificateKeyFile /etc/ssl/ssl.key/my.key
- SSLCertificateFile /etc/ssl/ssl.crt/yourDomainName.crt
- SSLCertificateChainFile /etc/ssl/ssl.crt/yourDomainName.ca-bundle
- # make sure add these lines in somewhere else
- #NameVirtualHost *:80
- #NameVirtualHost *:443
- <VirtualHost *:80>
- ServerName www.your-domain.com
- DocumentRoot /var/www/your-domain
- ServerAlias your-domain.com
- <VirtualHost>
- <VirtualHost *:443>
- SSLEngine on
- SSLCertificateKeyFile /etc/ssl/ssl.key/my.key
- SSLCertificateFile /etc/ssl/ssl.crt/yourDomainName.crt
- SSLCertificateChainFile /etc/ssl/ssl.crt/yourDomainName.ca-bundle
- ServerName www.your-domain.com
- DocumentRoot /var/www/your-domain
- ServerName your-domain.com
- <VirtualHost>
- <Connector port="443" protocol="HTTP/1.1"
- address="198.74.59.36"
- SSLEnabled="true"
- scheme="https"secure="true"
- enableLookups="false"
- SSLCertificateFile="http://www.chinaz.com/etc/ssl/my/yourDomainName.crt"
- SSLCertificateChainFile="/etc/ssl/my/yourDomainName.ca-bundle.crt"
- SSLCertificateKeyFile="/etc/ssl/my/my.key"/>
- $ openssl pkcs12 -export -in yourDomainName.crt -inkey my.key > my.p12
- $ keytool -importkeystore -srckeystore my.p12 -destkeystore my.jks -srcstoretype pkcs12
欢迎光临 冠富商务通中文社区 (http://gu1vhwx.nat.ipyingshe.com/news/) | Powered by Discuz! 3.0 |