Is CN= OU= Kinamo, O= Kinamo, L= Antwerpen, ST= Antwerpen, C= BE correct?: YesĮnter the password for or enter "RETURN" if it is the same as the keystore password. What is the two-letter country code for this unit?: BE What is the name of your State or Province?: Antwerpen What is the name of your City or Locality?: Antwerpen What is the name of your organization?: Kinamo What is your first and last name?: What is the name of your organizational unit?: Kinamo You should be careful to enter your company information in exactly the same way it is displayed in WHOIS records for your domain name, and that it corresponds with your company data as entered in your country's company registry at incorporation. Next, you will be prompted to enter your organisation information. You will be prompted for a keystore password, which must be at least 6 characters long. Replace www_server_com with your own server name in the preceding command. In that case, prepend either $JAVA_HOME$ to the command for Linux / Unix / Mac OS X systems, or %JAVA_HOME% for Windows operating systems. If your java bin directory is not included in your path, you'll get a command not found error. Go to your certificate directory: ~]# cd certs]#Įxecute the following command to create a keystore and a new private key: certs]# keytool -genkey -alias www_server_com -keyalg RSA -keysize 2048 -keystore www_server_com.jks For illustration purposes, we'll be using /etc/ssl/certs in this article. SSL certificates, keys and CSR's are usually kept in a single directory on your server, but the exact folder may vary according to your distribution. ssh -l root Īfter typing in your password, you'll be connected to the server. If you're working on a Mac OS X or Linux desktop, you simply open a terminal window and type in the following command, taking care to replace the servername with the hostname or IP address of your own server. Windows doesn't have a built-in SSH client, Kinamo recommends you download the free and popular PuTTY client. How to generate a CSR with keytool? Step 1: Connect to your serverĬonnect to your server using the SSH (Secure Shell) protocol. If you already obtained your certificate from the certificate authority, you may wish to read «: How to install an SSL Certificate using keytool ». This article explains how to create a new keystore and how to generate a Certificate Signing Request file using keytool. Certificates and key pairs are stored in a secured keystore. Keytool is a command-line utility that allows you to manage keystores, public and private keys, and SSL certificates for Java-based web servers, such as Tomcat or JBoss. Keytool - Generate SSL certificate request (CSR)
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |