Server cert generation

Note: Enter the same passphrase for all the 3 operations below

  1. openssl genpkey -out server.key -algorithm RSA
    -pkeyopt rsa_keygen_bits:2048 -aes-128-cbc

  2. CSR configuration file </h3

``` [req] prompt = no distinguished_name = dn req_extensions = ext [dn] C = AU ST = Victoria L = Melbourne O = rajkumar OU = integration CN = www.rajkumar.com emailAddress = rajkumar@earth.com [ext] subjectAltName = @sans [sans] DNS.0 = localhost DNS.1 = anz.com DNS.2 = www.anz.com ```
  1. openssl req -new -config ssl.conf -key server.key -out server.csr
  2. openssl x509 -req -days 365 -in server.csr -signkey server.key -out server.crt

Client cert generation

Note: Enter the same passphrase for all the 3 operations below

  1. openssl genpkey -out client.key -algorithm RSA
    -pkeyopt rsa_keygen_bits:2048 -aes-128-cbc

2.openssl req -new -config ssl2.conf -key client.key -out client.csr 3. openssl x509 -req -days 365 -in client.csr -signkey client.key -out client.crt 4. cp client.crt ca.crt