CA.shãopenssl.cnfã«è§¦ããã«CA証ææ¸ãä½ã£ã¦ç½²åããæ¹æ³ã®ã¡ã¢ã ãªãããã¡ãã¨ããéç¨ãå¿ è¦ãªå ´é¢ã§ã¯åèã«ãã¹ãã§ãªãã 話ãåç´ã«ããããã以ä¸ã§ç¨ããå ¬ééµã¢ã«ã´ãªãºã ã¯ãã¹ã¦RSA 2048 bitã¨ããã CA証ææ¸ã®ä½æ èªå·±ç½²å証ææ¸ãä½ãã¨èªåçã«Basic Constraintsã«CA:TRUEãä»ãããããã®ã¾ã¾CA証ææ¸ï¼ããæ£ç¢ºã«ã¯ã«ã¼ã証ææ¸ï¼ã¨ãªãã $ openssl genrsa -out ca.key 2048 $ openssl req -new -x509 -days 3650 -key ca.key -out ca.crt -subj "/CN=my private CA" ããã§ã¯ãca.keyãCAã®ç§å¯éµãca.crtãCA証ææ¸ã¨ãªãã ã¾ãã-daysãªãã·ã§ã³ã使ã£ã¦æå¹æéãç´10å¹´å¾ã«æå®ãã¦ããã æå®ããªãå ´å
{{#tags}}- {{label}}
{{/tags}}