当前位置:网站首页>Ssl== certificate related concepts
Ssl== certificate related concepts
2022-07-29 03:47:00 【A java development】
http://t.zoukankan.com/top5-p-1589129.html
https://blog.csdn.net/weiyuanke/article/details/87256937
use OPSSL Generate CSR Document and KEY file , Hold CSR Documents to CA Certification body let CA Signature of certification authority , Sign and return CRT file ,CRT Document and KEY The file is stored in the server ( Or use OPENSSL take CRT and KEY The documents are merged into PFX file , This file is very familiar , Put it in springboot Project resource You can configure it under the directory SSL), Request the server to get CRT file , The client goes to CA Verified by Certification Authority CRT Document authenticity ( This process may not need to CA Agency verification , The computer or browser comes with something you can trust CA Institutional information ?), If it's true , Just use CRT The public key encryption recorded in the file should be sent after passing the information to the server . The service side with KEY The private key in the file decrypts the received information .
Openssl Generate CSR Document method _chengqiuming The blog of -CSDN Blog _openssl Generate csr file
=======================================
CSR file :Certificate Signing Request Abbreviation , Certificate signing request , Keep the public key 、 Bound domain name 、 Company information 、 Region and other information
https://www.cnblogs.com/guanshan/p/guan2022-1-28.html
KEY file : The file where the private key is stored
CRT file :Certificate, after CA The official certificate after the signature and authentication of the organization , Self use OPENSSL Signature authentication is also ok
CA: E-commerce certification authority (CA, Certificate Authority)
PFX Documents or P12 file : For convenience, such as springboot This program reads , take CRT file 、 The private key is packaged together to generate a file , You need to provide an additional password when packaging .
JKS file :jdk Built-in tools keytool.exe pack CRT file 、 The file generated after the private key .keytool=openssl, Just two commands for creating and decompressing various files 、 The format is different , So there are two ways to generate online , The command used will be automatically generated
======================
PEM file ? I think equal to CRT be equal to CER, Because to nginx Two files are required for the certificate ,PEM+KEY perhaps CRT+KEY perhaps CER+KEY
Nginx install SSL certificate _love_yu_er The blog of -CSDN Blog
======================
java keytool Tools
边栏推荐
- 大厂们终于无法忍受“加一秒”了,微软谷歌Meta等公司提议废除闰秒
- Rdkit I: using rdkit to screen the structural characteristics of chemical small molecules
- 一文学透MySQL表的创建和约束
- Casbin入门
- RTP send and receive h265
- Tristate gate
- RHCE的at,crontab的基本操作,chrony服务和对称加密和非对称加密
- LVS+KeepAlived高可用部署实战应用
- Practical application cases of digital Twins - smart energy
- How fast does it take to implement a super simple language
猜你喜欢
EMD 经验模态分解
Exness: dove resolution helped gold rebound, and the focus turned to U.S. GDP
Instance setup flask service (simple version)
(nowcoder22529C)dinner(容斥原理+排列组合)
(codeforce547) c-mike and foam
1. Mx6u driver development-2-led driver
Rdkit I: using rdkit to screen the structural characteristics of chemical small molecules
Why does the 20 bit address bus determine the storage space of 1MB
for_each用法示例
Shopify卖家:EDM营销就要搭配SaleSmartly,轻松搞定转化率
随机推荐
In depth C language (2) -- definition and use of structure
路西法98-生活记录ing
(2022杭电多校三)1011-Link is as bear(思维+线性基)
What you see and think in Microsoft
【C语言入门】ZZULIOJ 1031-1035
RHCE的at,crontab的基本操作,chrony服务和对称加密和非对称加密
深入C语言(4)——switch的定义与使用
Machine learning based on deepchem
内连接和左连接简单案例
The list is not updated in real time when JS V-for data changes
Typescript from getting started to mastering (19) enumeration types
Introduction and comparison of unicast, multicast (target broadcast, multicast), broadcast, flooding, flooding
5年多工作经验,工资给15k,要是你,你会接受吗?
Anaconda offline installation environment
The data type of symbol, a new feature of ES6
通过递归实现多级联动
Arrow function of new features of ES6
Sunflower senior product director technology sharing: "how to apply national remote control" in AD domain environment
Violence recursion to dynamic programming 01 (robot movement)
How to judge stun protocol