github.com/kafkaliu/etcd@v0.1.2-0.20131007164923-44c16dd30d69/fixtures/ca/README (about) 1 Testing x509 certs for luacrypto 2 3 # Make the CA cert 4 openssl genrsa -des3 -out ca.key 4096 5 openssl req -new -x509 -days 365 -key ca.key -out ca.crt -extfile openssl.cnf -extensions v3_ca 6 7 # Make server cert and signing request 8 openssl genrsa -des3 -out server.key 4096 9 openssl req -new -key server.key -out server.csr -config openssl.cnf 10 11 # Sign the server csr and generate a crt 12 openssl x509 -req -days 365 -in server.csr -CA ca.crt -CAkey ca.key -set_serial 01 -out server.crt -extfile openssl.cnf -extensions v3_req 13 14 # Output unencrypted server key 15 openssl rsa -in server.key -out server.key.insecure 16 17 # Output "raw" public key from server crt 18 openssl x509 -pubkey -noout -in server.crt > server.pub