genkey create cert error

asked 2012-06-07 13:48:42 -0500

Dave gravatar image

I am following the instructions on the Fedora Docs, Setting up an SSL Server.

At the very end, after you enter everything and genkey goes on to generate the certificates, it throws a "unable to create cert signing request for this host". What could possibly be the cause of this error?

genkey gave no other info as to the cause of this error.

1 Answer

answered 2012-09-13 21:52:28 -0500

sferich888 gravatar image

updated 2012-09-13 21:55:33 -0500

Not sure what documentation your following so I'll just write down the instructions. I'd look at Apache's site for the docs on mod_ssl, there is a good 'how to' there.

Now for the good stuff.

'Google openssl' its your new best friend and secrete enemy. The docs suck but if you know, kinda what your looking for you can make it work, be sure to look at the examples.

So the hard part of setting this up is the PKI certificates. Its 3 steps:

1) generate a key # openssl genrsa -des3 2048

2) create cert request # openssl x509 -req -out cert.csr ΔΔ see openssl example this is probably wrong they have one for a self signed cert, but this is close.

3) sign certificate This is normally done by our ca look at verisign or thawt. The will give similar instructions.

