1:生成密钥
openssl genrsa -des3 -outserver.key2048
2:创建服务器证书
openssl req -new -key server.key -out server.csr
3:创建CA证书
openssl req -new -x 509 -key server.key -out ca.crt -days 365
4:创建.srt
openssl x509 -req -days3650-inserver.csr -CA ca.crt -CAkey server.key -CAcreateserial -out server.crt
5:配置nginx
server{
listen 443;
server_name localhsot;
ssl on;
root /home/www/;
ssl_certificate /xxx/server.crt;
ssl_certificate_key /xx/server.key;
}
网友评论