<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>FAQ Book &#187; SSL</title>
	<atom:link href="https://blog.faq-book.com/?cat=616&#038;feed=rss2" rel="self" type="application/rss+xml" />
	<link>https://blog.faq-book.com</link>
	<description>Some SOP,Note,Learned Article of IT  關於IT資訊界的筆記和學習紀錄</description>
	<lastBuildDate>Sun, 27 Mar 2022 12:25:43 +0000</lastBuildDate>
	<language>zh-TW</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
	<atom:link rel='hub' href='https://blog.faq-book.com/?pushpress=hub'/>
		<item>
		<title>SSL憑證設定教學</title>
		<link>https://blog.faq-book.com/?p=92</link>
		<comments>https://blog.faq-book.com/?p=92#comments</comments>
		<pubDate>Mon, 14 Feb 2011 11:21:04 +0000</pubDate>
		<dc:creator>Derek</dc:creator>
				<category><![CDATA[SSL]]></category>
		<category><![CDATA[憑證]]></category>

		<guid isPermaLink="false">http://blog.faq-book.com/?p=92</guid>
		<description><![CDATA[<p>&nbsp;</p>
<p class="MsoNormal"><span class="Apple-style-span" style="font-family: 細明體; ">一、</span><span lang="EN-US" style="font-family: 細明體; "> SSL</span><span class="Apple-style-span" style="font-family: 細明體; ">介紹</span></p>
<p class="MsoNormal"><span style="font-family:細明體">安全套接層（<span lang="EN-US">Secure Sockets Layer</span>，<span lang="EN-US">SSL</span>）是網景公司（<span lang="EN-US">Netscape</span>）在推出<span lang="EN-US">Web</span>瀏覽器首版的同時，提出</span></p>
<p class="MsoNormal"><span style="font-family:細明體">的協議。<span lang="EN-US">SSL</span>採用公開密鑰技術，保證兩個應用間通信的保密性和可靠性，使客戶與伺服器應用之間的通信</span></p>
<p class="MsoNormal"><span style="font-family:細明體">不被攻擊者竊聽。可在伺服器和客戶機兩端同時實現支持，目前已成為網際網路上保密通訊的工業標準，</span></p>
<p class="MsoNormal"><span style="font-family:細明體">現行<span lang="EN-US">Web</span>瀏覽器亦普遍將<span lang="EN-US">Http</span>和<span lang="EN-US">SSL</span>相結合，從而實現安全通信。此協議和其繼任者傳輸層安全（<span lang="EN-US">Transport</span></span></p>
<p class="MsoNormal"><span style="font-family:細明體"><span lang="EN-US">Layer Security</span>，<span lang="EN-US">TLS</span>）是為網路通信提供安全及數據完整性的一種安全協議。<span lang="EN-US">TLS</span>與<span lang="EN-US">SSL</span>在傳輸層對網路連</span></p>
<p class="MsoNormal"><span style="font-family:細明體">接進行加密。<span lang="EN-US"><o:p></o:p></span></span></p>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體"><o:p>&nbsp;</o:p></span></p>
<p class="MsoNormal"><span style="font-family:細明體">二、<span lang="EN-US"> SSL</span>設定說明<span lang="EN-US"><o:p></o:p></span></span></p>
<p class="MsoNormal"><span style="font-family:細明體">安裝<span lang="EN-US">SSL</span>時，<span lang="EN-US">openssl </span>一定要安裝最新版本，<span lang="EN-US">stable</span>版本。<span lang="EN-US">(</span>請依當時的最新版本安裝<span lang="EN-US">)<o:p></o:p></span></span></p>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體">SSL </span><span style="font-family:細明體">官網 查最新的<span lang="EN-US">SSL&nbsp; http://www.openssl.org/source/<o:p></o:p></span></span></p>
<p class="MsoNormal"><span style="font-family:細明體">完成以上軟體的安裝後<span lang="EN-US">, </span>我們便可開始進行憑證申請及安裝<span lang="EN-US">, </span>其程序大致如下：<span lang="EN-US"> <o:p></o:p></span></span></p>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體">1) </span><span style="font-family:細明體">產製金鑰對<span lang="EN-US"> <o:p></o:p></span></span></p>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體">2) </span><span style="font-family:細明體">產生憑證申請檔<span lang="EN-US"> <o:p></o:p></span></span></p>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體">3) </span><span style="font-family:細明體">購買<span lang="EN-US">SSL</span>憑證<span lang="EN-US">(</span>或自行產生<span lang="EN-US">) <o:p></o:p></span></span></p>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體">4) </span><span style="font-family:細明體">安裝憑證<span lang="EN-US"><o:p></o:p></span></span></p>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體"><o:p>&nbsp;</o:p></span></p>
<p class="MsoNormal"><b><span lang="EN-US" style="font-family:細明體">1. </span></b><b><span style="font-family:細明體">安裝<span lang="EN-US">OPENSSL<o:p></o:p></span></span></b></p>
<table border="1" cellpadding="0" cellspacing="0" class="MsoNormalTable" style="width:446.55pt;margin-left:8.45pt;background:black;border-collapse:<br />
 collapse;border:none;mso-border-alt:outset windowtext .25pt;mso-yfti-tbllook:<br />
 1184;mso-padding-alt:0cm 0cm 0cm 0cm" width="595"><br />
<tbody>
<tr>
<td style="width:446.55pt;border:inset 1.0pt;mso-border-alt:inset windowtext .25pt;<br />
  padding:.7pt 0cm .7pt 8.45pt" width="595">
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">wget http://www.openssl.org/source/openssl-0.9.8q.tar.gz</span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:white"> [root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">tar zxvf openssl-0.9.8q.tar.gz</span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:white"><o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">cd openssl-0.9.8q<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]#</span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow"> ./config<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">make<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">make install</span></span><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white"><o:p></o:p></span></p>
</td>
</tr>
</tbody>
</table>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體"><o:p>&nbsp;</o:p></span></p>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體"><o:p>&nbsp;</o:p></span></p>
<p class="MsoNormal"><b><span lang="EN-US" style="font-family:細明體">2. </span></b><b><span style="font-family:細明體">設定<span lang="EN-US">OpenSSL </span>設定檔的位置<span lang="EN-US"><o:p></o:p></span></span></b></p>
<p class="MsoNormal"><span lang="EN-US" style="font-family:<br />
細明體">2.1 </span><span style="font-family:細明體">先把要用的資料夾建立好<span lang="EN-US"><o:p></o:p></span></span></p>
<table border="1" cellpadding="0" cellspacing="0" class="MsoNormalTable" style="width:446.55pt;margin-left:8.45pt;background:black;border-collapse:<br />
 collapse;border:none;mso-border-alt:outset windowtext .25pt;mso-yfti-tbllook:<br />
 1184;mso-padding-alt:0cm 0cm 0cm 0cm" width="595"><br />
<tbody>
<tr>
<td style="width:446.55pt;border:inset 1.0pt;mso-border-alt:inset windowtext .25pt;<br />
  padding:.7pt 0cm .7pt 8.45pt" width="595">
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">mysql -u root -p cacti &lt; pa.sql</span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  &quot;Arial&quot;,&quot;sans-serif&quot;;color:yellow"><o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]#</span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow"> mkdir /etc/ssl<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">cp /etc/pki/tls/openssl.cnf /etc/ssl/.<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">cd /etc/ssl<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]#</span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow"> mkdir private<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]#</span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow"> mkdir certs<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">mkdir crl<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">mkdir newcerts<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">touch index.txt<o:p></o:p></span></span></p>
<p class="MsoNormal"><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white">[root@localhost ~]# </span></span><span class="apple-style-span"><span lang="EN-US" style="font-size:10.0pt;font-family:<br />
  細明體;color:yellow">export OPENSSL_CONF=&quot;/etc/ssl/openssl.cnf&quot;</span></span><span lang="EN-US" style="font-size:10.0pt;font-family:細明體;color:white"><o:p></o:p></span></p>
</td>
</tr>
</tbody>
</table>
<p class="MsoNormal"><span lang="EN-US"><o:p>&nbsp;</o:p></span></p>
<p class="MsoNormal"><span lang="EN-US"><o:p>&nbsp; <a href="https://blog.faq-book.com/?p=92#more-92" class="more-link">繼續閱讀 &raquo;</a></o:p></span></p>

<div class="wp_rp_wrap  wp_rp_pinterest" id="wp_rp_first"><div class="wp_rp_content"><h3 class="related_post_title">更多內容</h3><ul class="related_post wp_rp" style="visibility: visible"><li data-position="0" data-poid="in-2458" data-post-type="none" ><a href="https://blog.faq-book.com/?p=2458" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2013/02/default-150x150.png" alt="SSL憑證 安裝 移除教學 For Windows Server 2003" /></a><a href="https://blog.faq-book.com/?p=2458" class="wp_rp_title">SSL憑證 安裝 移除教學 For Windows Server 2003</a></li><li data-position="1" data-poid="in-1917" data-post-type="none" ><a href="https://blog.faq-book.com/?p=1917" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2013/02/default-150x150.png" alt="[問題紀錄]發生找不到 mysql.sock 的處理方法" /></a><a href="https://blog.faq-book.com/?p=1917" class="wp_rp_title">[問題紀錄]發生找不到 mysql.sock 的處理方法</a></li><li data-position="2" data-poid="in-5976" data-post-type="none" ><a href="https://blog.faq-book.com/?p=5976" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2012/10/VMware-vSphere-VM.jpg" alt="VMware vSphere 5.1 新增VM虛擬機" /></a><a href="https://blog.faq-book.com/?p=5976" class="wp_rp_title">VMware vSphere 5.1 新增VM虛擬機</a></li><li data-position="3" data-poid="in-2571" data-post-type="none" ><a href="https://blog.faq-book.com/?p=2571" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2013/02/default-150x150.png" alt="Nginx 安裝時常見的問題 2" /></a><a href="https://blog.faq-book.com/?p=2571" class="wp_rp_title">Nginx 安裝時常見的問題 2</a></li><li data-position="4" data-poid="in-4645" data-post-type="none" ><a href="https://blog.faq-book.com/?p=4645" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2012/04/Nginx-–-Virtual-Host-.jpg" alt="Nginx – Virtual Host 設定" /></a><a href="https://blog.faq-book.com/?p=4645" class="wp_rp_title">Nginx – Virtual Host 設定</a></li><li data-position="5" data-poid="in-5830" data-post-type="none" ><a href="https://blog.faq-book.com/?p=5830" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2012/09/Update-5.0-to-5.1.jpg" alt="VMware ESXi5.0輕鬆升級ESXi5.1" /></a><a href="https://blog.faq-book.com/?p=5830" class="wp_rp_title">VMware ESXi5.0輕鬆升級ESXi5.1</a></li><li data-position="6" data-poid="in-4299" data-post-type="none" ><a href="https://blog.faq-book.com/?p=4299" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2012/01/03.jpg" alt="VMware ESX(i)使用VMware vSphere Client做OVF備份與還原" /></a><a href="https://blog.faq-book.com/?p=4299" class="wp_rp_title">VMware ESX(i)使用VMware vSphere Client做OVF備份與還原</a></li><li data-position="7" data-poid="in-6606" data-post-type="none" ><a href="https://blog.faq-book.com/?p=6606" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2012/11/Veeam-ONE-Free-Edition-Reporter-Dashboards.jpg" alt="監控軟體 Veeam ONE Free Edition &#8211; Reporter 儀表板管理" /></a><a href="https://blog.faq-book.com/?p=6606" class="wp_rp_title">監控軟體 Veeam ONE Free Edition &#8211; Reporter 儀表板管理</a></li><li data-position="8" data-poid="in-4329" data-post-type="none" ><a href="https://blog.faq-book.com/?p=4329" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2012/01/10.jpg" alt="VMware vSphere Client 5.0下載安裝" /></a><a href="https://blog.faq-book.com/?p=4329" class="wp_rp_title">VMware vSphere Client 5.0下載安裝</a></li><li data-position="9" data-poid="in-4383" data-post-type="none" ><a href="https://blog.faq-book.com/?p=4383" class="wp_rp_thumbnail"><img src="http://blog.faq-book.com/wp-content/uploads/2012/01/How-to-Install-PPTP-Server-on-Ubuntu.jpg" alt="How to Install PPTP Server on Ubuntu" /></a><a href="https://blog.faq-book.com/?p=4383" class="wp_rp_title">How to Install PPTP Server on Ubuntu</a></li></ul></div></div>
<div class='yarpp-related-rss yarpp-related-none'>
<h3>相關文章:</h3>
<p>沒有相關文章</p>
<img src='http://yarpp.org/pixels/96bfd12e93e905461749e105253e82f0'/>
</div>
]]></description>
		<wfw:commentRss>https://blog.faq-book.com/?feed=rss2&#038;p=92</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>
