<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.8" -->
<?xml-stylesheet href="https://dwiki.heisl.org/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="https://dwiki.heisl.org/feed.php">
        <title>Stone Wiki - linux:webserver:openssl</title>
        <description></description>
        <link>https://dwiki.heisl.org/</link>
        <image rdf:resource="https://dwiki.heisl.org/lib/exe/fetch.php?media=wiki:dokuwiki.svg" />
       <dc:date>2026-04-19T14:55:51+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:check_cert_expire&amp;rev=1698070372&amp;do=diff"/>
                <rdf:li rdf:resource="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:csr_erstellen&amp;rev=1624365535&amp;do=diff"/>
                <rdf:li rdf:resource="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:csr_windows_ca_sign&amp;rev=1607167834&amp;do=diff"/>
                <rdf:li rdf:resource="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:pem_to_javakeystore&amp;rev=1713184812&amp;do=diff"/>
                <rdf:li rdf:resource="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:pkcs12_to_pem&amp;rev=1713184722&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="https://dwiki.heisl.org/lib/exe/fetch.php?media=wiki:dokuwiki.svg">
        <title>Stone Wiki</title>
        <link>https://dwiki.heisl.org/</link>
        <url>https://dwiki.heisl.org/lib/exe/fetch.php?media=wiki:dokuwiki.svg</url>
    </image>
    <item rdf:about="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:check_cert_expire&amp;rev=1698070372&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2023-10-23T14:12:52+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>check_cert_expire</title>
        <link>https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:check_cert_expire&amp;rev=1698070372&amp;do=diff</link>
        <description>Check SSL Cert Expire Date

Expire Date


echo | openssl s_client -showcerts -servername &lt;sniname&gt; -connect &lt;server&gt;:&lt;port&gt; 2&gt;/dev/null | openssl x509 -noout -startdate -enddate

Beispiel:
echo | openssl s_client -showcerts -servername dwiki.heisl.org -connect dwiki.heisl.org:443 2&gt;/dev/null | openssl x509 -noout -startdate -enddate</description>
    </item>
    <item rdf:about="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:csr_erstellen&amp;rev=1624365535&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2021-06-22T12:38:55+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>csr_erstellen</title>
        <link>https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:csr_erstellen&amp;rev=1624365535&amp;do=diff</link>
        <description>CSR erstellen

Standard 2019


openssl req -nodes -new -keyout &lt;file.key&gt; -newkey rsa:4096 -sha256 -out &lt;file.csr&gt;





Standard 2021

CSR Config File erstellen


vim heisl.org_20210622.conf

[req]
distinguished_name = req_distinguished_name
req_extensions = v3_req
prompt = no
[req_distinguished_name]
C = AT
ST = Vienna
L = Vienna
O = Heisl
OU = IT
CN = heisl.org
[v3_req]
keyUsage = keyEncipherment, dataEncipherment
extendedKeyUsage = serverAuth
subjectAltName = @alt_names
[alt_names]
DNS.1 = he…</description>
    </item>
    <item rdf:about="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:csr_windows_ca_sign&amp;rev=1607167834&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2020-12-05T11:30:34+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>csr_windows_ca_sign</title>
        <link>https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:csr_windows_ca_sign&amp;rev=1607167834&amp;do=diff</link>
        <description>CSR in Windows CA Signieren

CSR wird unter Linux erstellt und dann in einer Windows CA signiert. 



CSR Erstellen


openssl req -nodes -new -keyout apache_vhost.domain.loc.key -newkey rsa:4096 -sha256 -out apache_vhost.domain.loc.csr





CSR signieren lassen</description>
    </item>
    <item rdf:about="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:pem_to_javakeystore&amp;rev=1713184812&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2024-04-15T12:40:12+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>pem_to_javakeystore</title>
        <link>https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:pem_to_javakeystore&amp;rev=1713184812&amp;do=diff</link>
        <description>Java Keystore erstellen aus PEM

openssl pkcs12 -export -in cert.pem -out server.keystore -name &quot;Certname&quot;</description>
    </item>
    <item rdf:about="https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:pkcs12_to_pem&amp;rev=1713184722&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2024-04-15T12:38:42+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>pkcs12_to_pem</title>
        <link>https://dwiki.heisl.org/doku.php?id=linux:webserver:openssl:pkcs12_to_pem&amp;rev=1713184722&amp;do=diff</link>
        <description>pkcs12 zu pem

PKCS12 das auch mit PW geschützt ist soll danach ein PEM sein ohne PW



Export vom Cert


openssl pkcs12 -clcerts -nokeys -in &quot;YourPKCSFile&quot; -out certificate.crt -password pass:PASSWORD -passin pass:PASSWORD





Export vom CA Cert


openssl pkcs12 -cacerts -nokeys -in &quot;YourPKCSFile&quot; -out ca-cert.ca -password pass:PASSWORD -passin pass:PASSWORD</description>
    </item>
</rdf:RDF>
