- CA Certificate Authority
- RA Registration Authority
- OpenCA
- Openssl
- touch /etc/pki/CA/index.txt
- echo 01> /etc/pki/CA/serial
- echo 01> /etc/pki/CA/crlnumber
- openssl req -new -x509 -key /etc/pki/CA/private/cakey.pem -days 7300 \
- -out /etc/pki/CA/cacert.pem
- (umask 077; openssl genrsa -out /etc/httpd/ssl/httpd.key 2048)
- openssl req -new -key /etc/httpd/ssl/httpd/ssl/httpd.key -days 365 \
- -out /etc/httpd/ssl/httpd.csr
- openssl x509 -in /PATH/FROM/CERT_FILE -noout -serial -subject
- b CA
- openssl crl -in /etc/pki/CA/crl/mysky.crl -noout -text
- Linux openssh openssl
来源: http://www.bubuko.com/infodetail-2615067.html