Hello,
>       I've some problem with OpenSSL, i'm trying to create my own CA autority 
> with the following commands and create some certs:
> 
> 1)openssl genrsa -out /etc/ssl/private/inet_ca.key -aes256 1024
> 
> 2)openssl req -x509 -new -key /etc/ssl/private/inet_ca.key -out 
> /etc/ssl/certs/inet_ca.crt
> 
> 3)openssl genrsa -out /etc/apache/ssl.key/secure_inet_org.key 1024
> 
> 4)openssl req -new -key /etc/apache/ssl.key/secure_inet_org.key -out 
> /etc/apache/ssl.csr/secure_inet_org.csr
> 
> 5)openssl x509 -req -CA /etc/ssl/certs/inet_ca.crt -CAkey 
> /etc/ssl/private/inet_ca.key -CAcreateserial -CAserial 
> /etc/ssl/certs/inet_ca.srl -in /etc/apache/ssl.csr/secure_inet_org.csr -out 
> /etc/apache/ssl.crt/secure_inet_org.crt
> 
> 
> 
> ------Apache2 error.log------------------>
> 
> [Sun Aug 12 23:08:15 2007] [warn] RSA server certificate CommonName (CN) 
> `Inet Administrati
> on' does NOT match server name!?
> [Sun Aug 12 23:08:15 2007] [error] Unable to configure RSA server private key
> [Sun Aug 12 23:08:15 2007] [error] SSL Library Error: 185073780 
> error:0B080074:x509 certifi
> cate routines:X509_check_private_key:key values mismatch
Certificate is not from your private key. Public part of RSA (modulus
and private_exponent) must be the same in private key and in
certificate.

Best regards,
-- 
Marek Marcola <[EMAIL PROTECTED]>

______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
User Support Mailing List                    openssl-users@openssl.org
Automated List Manager                           [EMAIL PROTECTED]

Reply via email to