{"id":1558,"date":"2017-01-29T16:26:47","date_gmt":"2017-01-29T16:26:47","guid":{"rendered":"http:\/\/cdblog.cdstealer.com\/?p=1558"},"modified":"2017-05-28T17:47:54","modified_gmt":"2017-05-28T16:47:54","slug":"generate-ssl-certificate-request","status":"publish","type":"post","link":"https:\/\/cdblog.cdstealer.com\/?p=1558","title":{"rendered":"Generate SSL Certificate Request."},"content":{"rendered":"<h3><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-1559 size-large\" src=\"http:\/\/cdblog.cdstealer.com\/wp-content\/uploads\/2017\/01\/openssl-logo-1024x278.png\" width=\"474\" height=\"129\" srcset=\"https:\/\/cdblog.cdstealer.com\/wp-content\/uploads\/2017\/01\/openssl-logo-1024x278.png 1024w, https:\/\/cdblog.cdstealer.com\/wp-content\/uploads\/2017\/01\/openssl-logo-300x82.png 300w, https:\/\/cdblog.cdstealer.com\/wp-content\/uploads\/2017\/01\/openssl-logo.png 1600w\" sizes=\"auto, (max-width: 474px) 100vw, 474px\" \/><\/h3>\n<h3 id=\"generate-the-rsa-key\">Generate the RSA key<\/h3>\n<p>Run the following commands to create a directory in which to store your RSA key, substituting a directory name of your choice:<\/p>\n<pre><code>mkdir ~\/domain.com.ssl\/\r\ncd ~\/domain.com.ssl\/\r\n<\/code><\/pre>\n<p>Run the following command to generate a private key:<\/p>\n<pre><code>openssl genrsa -out ~\/domain.com.ssl\/domain.com.key 2048\r\n<\/code><\/pre>\n<h3 id=\"create-a-csr\">Create a CSR<\/h3>\n<p>Type the following command to create a CSR with the RSA private key (output is in PEM format):<\/p>\n<pre><code>openssl req -new -sha256 -key ~\/domain.com.ssl\/domain.com.key -out ~\/domain.com.ssl\/domain.com.csr\r\n<\/code><\/pre>\n<p>When prompted, enter the necessary information for creating a CSR by using the conventions shown in the following table.<\/p>\n<p class=\"callout-note\"><strong>Note:<\/strong> The following characters cannot be used in the <code>Organization Name<\/code> or the<code>Organizational Unit<\/code>: &lt; &gt; ~ ! @ # $ % ^ * \/ \\ ( ) ?.,&amp;<\/p>\n<table>\n<thead>\n<tr>\n<th>DN field<\/th>\n<th>Explanation<\/th>\n<th>Example<\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td>Common Name<\/td>\n<td>The fully qualified domain name for your web server. This must be an exact match.<\/td>\n<td>If you intend to secure the URL <code>https:\/\/www.yourdomain.com<\/code>, then your CSR\u2019s common name must be <code>www.yourdomain.com<\/code>. If you plan to get a wildcard certificate, make sure to prefix your domain name with an asterisk, for example: <code>*.domain.com.<\/code><\/td>\n<\/tr>\n<tr>\n<td>Organization Name<\/td>\n<td>The exact legal name of your organization. Do not abbreviate your organization name.<\/td>\n<td>domain.com<\/td>\n<\/tr>\n<tr>\n<td>Organizational Unit<\/td>\n<td>Section of the organization.<\/td>\n<td>IT<\/td>\n<\/tr>\n<tr>\n<td>City or Locality<\/td>\n<td>The city where your organization is legally located.<\/td>\n<td>Wellesley Hills<\/td>\n<\/tr>\n<tr>\n<td>State or Province<\/td>\n<td>The state or province where your organization is legally located. Do not use an abbreviation.<\/td>\n<td>Massachusetts<\/td>\n<\/tr>\n<tr>\n<td>Country<\/td>\n<td>The two-letter ISO abbreviation for your country.<\/td>\n<td>US<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>Warning: Leave the challenge password blank (press <strong>Enter<\/strong>).<\/p>\n<h3 id=\"verify-your-csr\">Verify your CSR<\/h3>\n<p>Run the following command to verify your CSR:<\/p>\n<pre><code>openssl req -noout -text -in ~\/domain.com.ssl\/domain.com.csr\r\n<\/code><\/pre>\n<h3 id=\"submit-your-csr\">Submit your CSR<\/h3>\n<p>Submit the CSR that you created to a certificate authority.<\/p>\n<p>Trouble Shooting:<br \/>\nA really cool list of commands you can run <a href=\"https:\/\/geekflare.com\/openssl-commands-certificates\/\" target=\"_blank\">here<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Generate the RSA key Run the following commands to create a directory in which to store your RSA key, substituting a directory name of your choice: mkdir ~\/domain.com.ssl\/ cd ~\/domain.com.ssl\/ Run the following command to generate a private key: openssl genrsa -out ~\/domain.com.ssl\/domain.com.key 2048 Create a CSR Type the following command to create a CSR &hellip; <a href=\"https:\/\/cdblog.cdstealer.com\/?p=1558\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">Generate SSL Certificate Request.<\/span> <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[275,43,44],"class_list":["post-1558","post","type-post","status-publish","format-standard","hentry","category-gentoo","tag-csr","tag-openssl","tag-ssl"],"_links":{"self":[{"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=\/wp\/v2\/posts\/1558","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=1558"}],"version-history":[{"count":2,"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=\/wp\/v2\/posts\/1558\/revisions"}],"predecessor-version":[{"id":1750,"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=\/wp\/v2\/posts\/1558\/revisions\/1750"}],"wp:attachment":[{"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=1558"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=1558"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cdblog.cdstealer.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=1558"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}