linux:ssl

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
linux:ssl [2024/08/15 00:38] – [Linux MTLS] adminlinux:ssl [2024/11/09 13:13] (current) – [SSl certificates] admin
Line 6: Line 6:
   * https://medium.com/@seabro/how-to-create-selfsigned-ca-and-custom-wildcard-ssl-certificate-1112ed2080f7   * https://medium.com/@seabro/how-to-create-selfsigned-ca-and-custom-wildcard-ssl-certificate-1112ed2080f7
  
 +===== SSl certificates =====
 +
 +<code BASH>
 +# Example get and install https://discuss.elastic.co/t/error-response-from-daemon-get-https-docker-elastic-co-v2-x509-certificate-signed-by-unknown-authority/281754
 +curl --trace - https://docker.elastic.co:443
 +cd ~
 +openssl s_client -showcerts -connect www.domain.com:443 </dev/null 2>/dev/null|openssl x509 -outform PEM >domain.com.crt
 +sudo cp domain.com.crt /usr/local/share/ca-certificates
 +sudo update-ca-certificates
 +</code>
 +
 +<code BASH>
 +openssl s_client -connect bot.ip2u.ru:4443 -showcerts
 +openssl s_client -showcerts -connect www.domain.com:443
 +openssl s_client -showcerts -connect bot.ip2u.ru:4443 </dev/null 2>/dev/null|openssl x509 -outform PEM >ip2u_ru.crt
 +cat ./ip2u_ru.crt
 +sudo cp ./ip2u_ru.crt /usr/local/share/ca-certificates/ip2u.ru.crt
 +sudo update-ca-certificates
 +openssl s_client -showcerts -connect bot.ip2u.ru:4443
 +openssl s_client -CAfile ./ip2u_ru.crt -connect bot.ip2u.ru:4443
 +curl --verbose  bot.ip2u.ru:4443
 +</code>
 ===== Linux SSL key managment  ===== ===== Linux SSL key managment  =====
   * update ca certificate on ubuntu  https://www.dmosk.ru/miniinstruktions.php?mini=root-ca-linux   * update ca certificate on ubuntu  https://www.dmosk.ru/miniinstruktions.php?mini=root-ca-linux
Line 15: Line 37:
  
 ===== Linux MTLS ===== ===== Linux MTLS =====
 +https://get.localhost.direct/ \\
   * https://victoronsoftware.com/posts/mtls/   * https://victoronsoftware.com/posts/mtls/
   * https://smallstep.com/hello-mtls/doc/server/nginx - cert auth nginx   * https://smallstep.com/hello-mtls/doc/server/nginx - cert auth nginx
  • linux/ssl.1723682308.txt.gz
  • Last modified: 2024/08/15 00:38
  • by admin