Openssl

Linux OpenSSL commands

Check a certificate

openssl x509 -in server.crt -text -noout

Check a key

openssl rsa -in server.key -check

Check a CSR

openssl req -text -noout -verify -in server.csr

Verify a certificate and key matches

openssl x509 -noout -modulus -in server.crt| openssl md5
openssl rsa -noout -modulus -in server.key| openssl md5

Create a self signed cert & private key

  • valid: 1y
  • key: 2048 bit
openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout selfsigned.key -out selfsigned.crt