how to generate a server certificate
data:image/s3,"s3://crabby-images/a6d4e/a6d4efbdd45233ace8f6713bc750aa11cfce4cc7" alt="Post Post"
how to generate a server certificate
to create a server certificate using cacert.org
On your server run
# openssl genrsa -des3 -out imaps.example.org.key 1024
at Enter pass phrase for imaps.example.org.key:
next
# openssl req -new -key imaps.example.org.key -out imaps.example.org.csr
at Enter pass phrase for imaps.example.org.key:
cat imaps.example.org.csr
copy the certificate displayed on the screen
login to http://www.cacert.org/
login
click on domains and add your domain into the list of domains you manage.
click Server certificates
click New
paste in your CSR(Certificate Signing Request) in the text area on the form
now copy the generated certificate
and create a new file on the server imaps.example.org.cert
and paste the resulting certificate from CACert into imaps.example.org.cert.
create a nopassword version of file
openssl rsa -in imaps.example.org.key -out imaps.example.org.nopassword.key
copy the imaps.example.org.cert file to the /etc/ssl/certs folder
copy the imaps.example.org.nopassword.key files to the /etc/ssl/private folder
to create a server certificate using cacert.org
On your server run
# openssl genrsa -des3 -out imaps.example.org.key 1024
at Enter pass phrase for imaps.example.org.key:
next
# openssl req -new -key imaps.example.org.key -out imaps.example.org.csr
at Enter pass phrase for imaps.example.org.key:
cat imaps.example.org.csr
copy the certificate displayed on the screen
login to http://www.cacert.org/
login
click on domains and add your domain into the list of domains you manage.
click Server certificates
click New
paste in your CSR(Certificate Signing Request) in the text area on the form
now copy the generated certificate
and create a new file on the server imaps.example.org.cert
and paste the resulting certificate from CACert into imaps.example.org.cert.
create a nopassword version of file
openssl rsa -in imaps.example.org.key -out imaps.example.org.nopassword.key
copy the imaps.example.org.cert file to the /etc/ssl/certs folder
copy the imaps.example.org.nopassword.key files to the /etc/ssl/private folder