Chris,

Thanks..

Brandon

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]] On Behalf Of Chris Cleeland
Sent: Tuesday, May 21, 2002 11:27 AM
To: [EMAIL PROTECTED]
Subject: Re: [openssl-users] Setting 5 year validity period.


On Tue, 21 May 2002, Brandon Amundson wrote:

> Is there something I could add to the following commands to change the

> default time a CA is good for? The ones I created are good for only 30

> days. I would like to have them be good for 1825 days.
> 
>  "To create the CA.pem and privkey.pem"
>     openssl req -out CA.pem -new -x509
> 
> "To sign the server cert"
> openssl x509 -req -in server.req -CA CA.pem -CAkey privkey.pem 
> -CAserial file.srl -out server.pem

Add:

  -days 1825

in both command lines.

-- 
  Chris Cleeland, cleeland_c @ ociweb.com,
http://www.milodesigns.com/~chris
     Principal Software Engineer, Object Computing, Inc., +1 314 579
0066
      Support Me Supporting Cancer Survivors in Ride for the Roses 2002
    >>>>>>>>>    Donate at http://www.milodesigns.com/donate
<<<<<<<<<

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    [EMAIL PROTECTED]
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to