SSL keys and certificates

Do not generate a key with a passphrase as Apache cannot start without entering it.

Regenerating keys

set -e 
MACHINE=backus
KEY=/etc/ssl/private/${MACHINE}.uwcs.co.uk.key
CERT=/etc/ssl/certs/${MACHINE}.uwcs.co.uk.crt

sudo mv ${KEY} ${KEY}-OLD
sudo openssl genrsa -out ${KEY} 1024
sudo chmod 600 ${KEY}
sudo openssl req -new -key ${KEY} -out ${CERT}
sudo openssl x509 -req -days 730 -in ${CERT} -signkey ${KEY} -out ${CERT}
sudo /etc/init.d/apache2 restart

Techteam Wiki: Software/SSL (last edited 2009-02-17 15:52:28 by localhost)