方法一、
server.xml
------------------protocol="org.apache.coyote.http11.Http11AprProtocol"
SSLCertificateChainFile="conf/sca.server1.crt"
SSLCertificateFile="conf/ssl.crt"
SSLCertificateKeyFile="conf/cert.key"
方法二、
protocol="org.apache.coyote.http11.Http11Protocol"
keystoreFile="ssl.p12"
keystorePass="xxxxxxxxx"
keystoreType="PKCS12"
方法三、
keytool -importkeystore -srckeystore ssl.p12 -srcstoretype PKCS12 -srcstorepass xxxxxxxxx -destkeystore tomcat.jks -deststorepass xxxxxxxxx
protocol="org.apache.coyote.http11.Http11Protocol"
keystoreFile="tomcat.jks"
keystorePass="xxxxxxxxx"
在Firefox下有问题
方法四、(3个月有效期)
https://www.sslforfree.com/
SSLCertificateChainFile="conf/ca_bundle.crt"
SSLCertificateFile="conf/certificate.crt"
SSLCertificateKeyFile="conf/private.key"
nginx.conf
------------------
ssl_certificate cert.pem;
ssl_certificate_key cert.key;
cert.pem: SSLCertificateFile + SSLCertificateChainFile
cert.key: SSLCertificateKeyFile https://startssl.com/ToolBox/DecryptPrivateKey