su root #切换root用户
#经过测试如果不是开始就切换root用户,在后面切换用户,可能config的时候,会不生效。
cd /usr/src
wget https://www.openssl.org/source/openssl-1.1.1i.tar.gz --no-check-certificate #下载安装包
tar zxvf openssl-1.1.1i.tar.gz #解压
cd openssl-1.1.1i/
./config shared --prefix=/usr/local/openssl
make install #编译安装
cp libcrypto.so.1.1 /usr/lib/x86_64-linux-gnu/
cp libssl.so.1.1 /usr/lib/x86_64-linux-gnu/
rm /usr/bin/openssl
ln -s /usr/local/openssl/bin/openssl /usr/bin/openssl
openssl version #查看openssl版本
#测试代码
#include <stdio.h>
#include <string.h>
#include <stdlib.h>
#include <iostream>
#include <openssl/evp.h>
#include <openssl/x509.h>
#include <openssl/x509v3.h>
int main ()
{
FILE *fp = fopen("/home/your name/111.cer", "r");
if (!fp)
{
fprintf(stderr, "unable to open: %s\n", "/home/your name/111.cer");
return EXIT_FAILURE;
}
X509 *cert = d2i_X509_fp(fp, NULL);
if (!cert)
{
fprintf(stderr, "unable to parse certificate in: %s\n", "/home/your name/111.cer");
fclose(fp);
return EXIT_FAILURE;
}
char *subj = X509_NAME_oneline(X509_get_subject_name(cert), NULL, 0);
char *issuer = X509_NAME_oneline(X509_get_issuer_name(cert), NULL, 0);
//char *seria = X509_NAME_oneline(X509_get_serialNumber(cert), NULL, 0);
std::cout<< "subject= "<< subj << "\nissuer=" << issuer <<std::endl;
X509_free(cert);
fclose(fp);
}