¾ç½Â¸ð£¬ÄúºÃ£¡ Openssl>req -new -x509 -keyout ./demoCA/private/cakey.pem -out ./demoCA/cacert.pem Openssl>req -out reqU.pem -keyout keyU.pem -new Openssl>ca -policy policy_anything -out certU.pem -infiles reqU.pem Openssl>pkcs12 -in certU.pem -inkey reqU.pem -certfile ./demoCA/cacert.pem -out certU.p12 -export -name "user" -inkey keyU.pem I success creation certificate. I cann't append the sample certificate! why? ÔÚ 2001-03-05 10:40:00 ÄúдµÀ£º >Help please!! >First!! Sorry!! I am unfamilier with things English!! >I was test with openssl. >I create certificate follow later.. > > >1."root ca generation" >Openssl>req -new -x509 -keyout ./demoCA/private/cakey.pem -out ./demoCA/cacert.pem > >2.User certification generation" >Openssl>req -out reqU.pem -keyout keyU.pem -new >Openssl>ca -policy policy_anything -out certU.pem -infiles reqU.pem >Openssl>pkcs12 -in certU.pem -inkey reqU.pem -certfile ./demoCA/cacert.pem -out > certU.p12 -export -name "user" -inkey keyU.pem > >I success creation certificate. >I appended my sample certificate! > > >Question!!!!! >I'm create intermediation CA(?) follow sample.. > >openSSL> req -new -keyout keyM.pem -out reqM.pem >openSSL> x509 -req -in reqM.pem -extensions v3_usr -CA ./democa/cacert.pem -CAkey >./democa/private/cakey.pem -CAcreateserial -out certM.pem >openssl> x509 -x509toreq -in certM.pem -signkey keyM.pem -out tmp.pem >openssl> ca -policy policy_anything -out certM1.pem -infiles tmpM.pem >openssl> pkcs12 -in certM1.pem -inkey keyM.pem -certfile ./democa/cacert.pem -out >certM.p12 -export -name "remoteM" > >and i install.... >But that added user certification > > > > >How create intermediation CA(?) ? >i want install intermediation CA(?) >but i don't know >I want openssl sample command that create down issue! >Please help me! Ö Àñ£¡ zgleaf [EMAIL PROTECTED] ______________________________________________________________________ OpenSSL Project http://www.openssl.org User Support Mailing List [EMAIL PROTECTED] Automated List Manager [EMAIL PROTECTED]