суббота, 23 февраля 2013 г.

Сертификаты и ключи

Сертификаты для aphache находятся в  /etc/httpd/alias
certutil -L -d /etc/httpd/alias
certutil -L -n Server-Cert -d /etc/httpd/alias



# certutil -L -d /etc/httpd/alias

Certificate Nickname                                         Trust Attributes
                                                             SSL,S/MIME,JAR/XPI

cacert                                                       CTu,Cu,Cu
Server-Cert                                                  u,u,u
alpha                                                        u,pu,u
# certutil -L -n Server-Cert -d /etc/httpd/alias
Certificate:
    Data:
        Version: 3 (0x2)
        Serial Number: 3 (0x3)
        Signature Algorithm: PKCS #1 SHA-1 With RSA Encryption
        Issuer: "CN=Certificate Shack,O=example.com,C=US"
        Validity:
            Not Before: Tue Feb 10 11:36:42 2009
            Not After : Sun Feb 10 11:36:42 2013
        Subject: "CN=localhost.localdomain,O=example.com,C=US"
        Subject Public Key Info:
            Public Key Algorithm: PKCS #1 RSA Encryption
            RSA Public Key:
                Modulus:
                    d3:78:3c:f9:0b:c2:51:4a:b5:86:ce:38:75:95:6f:79:
                    4b:48:18:95:f0:af:92:2e:7f:a5:06:52:10:65:0b:66:
                    ff:d6:ab:22:f5:78:0a:3c:37:3b:a1:3b:22:f9:94:c7:
                    b6:8d:ba:18:e3:a1:d5:64:f2:d5:d2:ce:eb:c5:a5:f9:
                    96:47:56:7a:35:99:d5:40:92:db:39:b6:09:5e:da:bb:
                    31:74:ed:9b:5a:63:14:46:58:90:ec:ea:e2:7e:e0:8c:
                    25:a5:ed:79:5e:22:45:e8:32:80:d6:67:38:72:0e:e7:
                    70:d5:fa:72:ec:c8:50:cd:11:03:33:cf:e1:18:20:25
                Exponent: 65537 (0x10001)
        Signed Extensions:
            Name: Certificate Type
            Data: 

            Name: Certificate Key Usage
            Usages: Key Encipherment

    Signature Algorithm: PKCS #1 SHA-1 With RSA Encryption
    Signature:
        47:85:0b:56:c7:98:02:c4:11:e4:bf:96:4f:e6:c8:5c:
        1d:04:08:e4:1e:95:b9:78:72:b8:2b:a8:54:85:d2:22:
        66:ed:76:26:a2:95:cb:63:ca:33:62:41:cf:7a:b1:18:
        16:80:54:86:12:bd:97:55:17:7c:3f:82:05:e1:19:e1:
        01:eb:fa:3b:0e:c0:63:7d:a3:17:d3:81:78:dd:a3:38:
        bc:ee:87:92:cc:21:f3:a3:02:b8:d6:ce:ea:4f:46:f1:
        6b:a6:c4:1a:63:1e:8d:16:66:4e:ac:38:14:cc:5e:dd:
        11:9d:77:97:ca:fb:15:84:c0:b8:98:33:d6:cd:e7:4e
    Fingerprint (MD5):
        ED:ED:4F:DD:C2:FD:E5:78:A7:9E:C4:30:FF:D4:82:A4
    Fingerprint (SHA1):
        BF:01:BC:F7:43:18:84:09:C5:5A:F7:53:C9:8D:A8:8D:64:C8:25:BD

    Certificate Trust Flags:
        SSL Flags:
            User
        Email Flags:
            User
        Object Signing Flags:
            User

#  

http://www.novell.com/communities/node/4048/generating-edirectory-server-certificate-using-openssl-tool