190
Creating a Self-Signed Certificate
You are about to be asked to enter information that will be incorporated
into your certificate request.
What you are about to enter is what is called a Distinguished Name or a DN.
There are quite a few fields but you can leave some blank
For some fields there will be a default value,
If you enter ‘.’, the field will be left blank.
-----
Country Name (2 letter code) [AU]:US
State or Province Name (full name) [Some-State]:California
Locality Name (eg, city) [ ]:Paso Robles
Organization Name (eg, company) [Widgits Pty Ltd]:Arbiter Systems, Inc.
Organizational Unit Name (eg, section) [ ]:Lab
Common Name (eg, YOUR name) [ ]:
Email Address [ ]:
Please enter the following ‘extra’ attributes
to be sent with your certificate request
A challenge password [ ]:
An optional company name [ ]:
The generated file (my.csr) might look like the following:
-----BEGIN CERTIFICATE REQUEST-----
MIIBsDCCARkCAQAwcDELMAkGA1UEBhMCVVMxEzARBgNVBAgTCkNhbGlmb3JuaWEx
...more data...
YA/JCw==
-----END CERTIFICATE REQUEST-----
C.1.3
Step 3A - Purchase a Certificate
To prevent web browsers from warning users about untrusted certificates, an SSL Certificate must be
purchased from a trusted authority. If you do not require this level of protection, you may go to Step
3B (Generate a Self Signed Certificate).
Most certificate vendors will ask for the generated CSR file (from Step 2) to be pasted into a field in
a web page during the purchase procedure. Be sure to copy the entire contents of the file (including the
BEGIN and END tags with the dashes) into the vendor’s web form.
Once the purchase has been completed, and other verification steps completed (this will vary from vendor
to vendor), they will provide you with a certificate file. You may skip to Step 4.
C.1.4
Step 3B - Generate a Self Signed Certificate
If you do not need a commercially purchased certificate, the following command will generate a Self Signed
Certificate using the files created from steps 1 and 2. Most web browsers will warn users that the certificate
is not trusted or signed by a trusted authority. Also note that the certificate generated will be valid for 365
days. After this period, users will be additionally warned about an expired certificate until a new certificate
is generated and uploaded to the NTP/PTP option.
B
openssl x509 -req -days 365 -in my.csr -signkey private.key -out my.crt
The generated file (my.crt) might look like the following:
-----BEGIN CERTIFICATE-----
Содержание 1200B
Страница 4: ...iv ...
Страница 135: ...A 3 Physical Dimensions 117 Figure A 2 Suggested Mounting of the GNSS Surge Arrester ...
Страница 143: ...B 7 Four Fiber Optic Outputs 125 Figure B 4 Jumper Locations ...
Страница 145: ...B 8 8 Channel High Drive IRIG B Amplifier 127 Figure B 5 8 High Drive Outputs Jumper Locations ...
Страница 161: ...B 10 Four Additional Outputs and Dry Contacts 25 50 Vdc 143 Figure B 7 Option Connector Signal Locations ...
Страница 212: ...Appendix E Statement of Compliance The following page is a statement of compliance that includes Model 1201B and 1201C ...