其实 跟msp生成一样的,都是要开启一个server端 ,只不过 enroll 时,命令多加上
-d --enrollment.profile tls
比如:登记orderer节点:
fabric-ca-client enroll -d --enrollment.profile tls -u http://orderer:orderer-password@localhost:8054 -c fabric-ca-client-config-orderer.yaml
注意:加上 配置文件
https://bitshuo.com/topic/5ae2c65c93163eb52a348d8a
mv ./OrdererTLS/tlscacerts/tls-10-*-60-*-8054.pem ./OrdererTLS/ca.crt
mv ./OrdererTLS/signcerts/cert.pem ./OrdererTLS/server.crt
mv ./OrdererTLS/keystore/****_sk ./OrdererTLS/server.key
mkdir ./OrdereMSP/tlscacerts
cp ./OrdererTLS/ca.crt ./OrdereMSP/tlscacerts