Solved

how to create ssl certifications on linux host

Posted on 2014-04-16
5
473 Views
Last Modified: 2014-04-28
Hello,

I got below request from one of the user,

Please issue a UC Cert for below hosts. Please provide PRIVATE KEY as well.

Hosts:
1)esg-qa
2)esg-uat
3)esg-lt
4)esg-stage

Duration: 3 Years, Algorithm: SHA-2


Can someone please guide me to walkthrough step by step in creating the ssl certs on above host ?
0
Comment
Question by:sudhirgoogle
  • 3
  • 2
5 Comments
 
LVL 1

Author Comment

by:sudhirgoogle
ID: 40005884
what is the difference between SSL Cert for each host - or-  it be one UC cert ?
0
 
LVL 9

Assisted Solution

by:rfportilla
rfportilla earned 500 total points
ID: 40005906
An SSL Cert for each requires a unique IP address for each.  That's why UC certs were created.  You can have one UC Cert with one IP address and multiple domains.  

You have to make sure that all of the browsers that consume these sites will support them (requires TLS 3).

Do you need to create the cert or purchase?  Godaddy sells them.
0
 
LVL 9

Expert Comment

by:rfportilla
ID: 40005913
This is documentation on using them with Apache:

https://wiki.apache.org/httpd/NameBasedSSLVHostsWithSNI
0
 
LVL 1

Author Comment

by:sudhirgoogle
ID: 40007003
Thanks for you comments. I don't have to purchase, i need to create host based certs. instead of IP can i create based on hostnames?
0
 
LVL 9

Accepted Solution

by:
rfportilla earned 500 total points
ID: 40007643
The answer is yes.  Technically, they are all host based. The older certs were based on a mechanism that required ip negotiation before the hostname was passed to the server.  Therefore, the server had to know that only one host could exist for that ip address.  The newer certs address this problem.  They are commonly called SNI certs.

Honestly, if I were to provide the steps for creating an SNI cert, I would just Google it and post the link.   I don't know how to create them off the top of my head.  I will let you Google it and if you have trouble finding directions, let me know.

Hope this helps.
0

Featured Post

VMware Disaster Recovery and Data Protection

In this expert guide, you’ll learn about the components of a Modern Data Center. You will use cases for the value-added capabilities of Veeam®, including combining backup and replication for VMware disaster recovery and using replication for data center migration.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Guacamole cut and paste issue 3 49
AWS RDS 3 69
nagios remote hosts 9 46
Encrypt a drive for use only in work environment? 10 59
SSL stands for “Secure Sockets Layer” and an SSL certificate is a critical component to keeping your website safe, secured, and compliant. Any ecommerce website must have an SSL certificate to ensure the safe handling of sensitive information like…
Join Greg Farro and Ethan Banks from Packet Pushers (http://packetpushers.net/podcast/podcasts/pq-show-93-smart-network-monitoring-paessler-sponsored/) and Greg Ross from Paessler (https://www.paessler.com/prtg) for a discussion about smart network …
Learn how to get help with Linux/Unix bash shell commands. Use help to read help documents for built in bash shell commands.: Use man to interface with the online reference manuals for shell commands.: Use man to search man pages for unknown command…
Learn how to navigate the file tree with the shell. Use pwd to print the current working directory: Use ls to list a directory's contents: Use cd to change to a new directory: Use wildcards instead of typing out long directory names: Use ../ to move…

863 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now