openssl genrsa -out demo.key 2048
openssl req -key demo.key -new -out demo.csr
touch demo.v3.ext
subjectKeyIdentifier = hash
authorityKeyIdentifier = keyid:always,issuer:always
basicConstraints = CA:TRUE
keyUsage = digitalSignature, nonRepudiation, keyEncipherment, dataEncipherment, keyAgreement, keyCertSign
subjectAltName = DNS:xxx.xxx.xxx.com, DNS:xxx.xxx.xxx.com
issuerAltName = issuer:copy
openssl x509 -req -in demo.csr -signkey demo.key -out demo.crt -days 8650 -sha256 -extfile demo.v3.ext
这篇博客介绍了如何使用OpenSSL命令行工具生成RSA密钥对、证书请求文件、自签名证书以及配置扩展字段,包括设置主题密钥标识符、权威密钥标识符、基本约束、密钥用途和备用名称等。
8603

被折叠的 条评论
为什么被折叠?



