1. 我们先简单说一下 ssl 制作的过程
生成 server.key -> 生成 server.ca.crt –> 生成 server.csr -> 生成 server.crt
参考文档
https://blog.csdn.net/zouqingfang/article/details/51484472
2. 查看一安装文档
https://knowledge.cheapsslsecurity.com/support/solutions/articles/22000200340-nginx-openssl-
3. Linux 系统下生成处理
# openssl req -new -newkey rsa:2048 -nodes -keyout new_sitename.key -out new_ sitename.csr
网站信息(以下)
Country Name (2 letter code) [XX]:CN
State or Province Name (full name) []:HongKong
Locality Name (eg, city) [Default City]:HongKong
Organization Name (eg, company) [Default Company Ltd]:XXX (HongKong) Co., Limited.
Organizational Unit Name (eg, section) []:Information Technology
Common Name (eg, your name or your server's hostname) []:*.xxx.com
Email Address []:aaa@XXX.com
注意,在这生成时,后面有需要提供密码,我们不需要密码,直接回车
# ls
new_ sitename.k