Sunday, December 29, 2013

The toughest job aka creating server/client certificates

The reason why is pretty unimportant, and frankly I don't know what I did to have it working. But suddenly it did.

The task is to have an apache server use SSL with client-certificates for authorization. No problem, you just create your own CA, issue a server certificate, issue a client certificate and convert to PKCS12-format for consumption in your favorite browser, right? Not so fast!

So I made a gist walking through the steps:

My starting point was this:

And intermediary process has been a lot of googleing seeing all sorts of procedures to accomplish something similar, and then not yet. Some resources has been:

That pretty much sums it up - have fun authenticating with your new certificates. 
Have a happy new years :-)


