diff options
author | Daniel Roesler <diafygi@gmail.com> | 2015-06-11 13:20:19 -0700 |
---|---|---|
committer | Daniel Roesler <diafygi@gmail.com> | 2015-06-11 13:20:19 -0700 |
commit | 67a7e97bbe19d3f184be8c8e59cbd9ac70cce210 (patch) | |
tree | bc86f96cad9a5e07af6f373674f4b5e25aac4dd2 /sign_csr.py | |
parent | 5f8fbfa36f1d0f462c5e435340ab8a404e187c13 (diff) |
updated readme with new command flow
Diffstat (limited to 'sign_csr.py')
-rw-r--r-- | sign_csr.py | 22 |
1 files changed, 11 insertions, 11 deletions
diff --git a/sign_csr.py b/sign_csr.py index 1808f7b..85cc260 100644 --- a/sign_csr.py +++ b/sign_csr.py @@ -119,11 +119,11 @@ Exponent\: ([0-9]+)\ #Step 3: Ask the user to sign the payloads sys.stderr.write(""" -STEP 1: You need to sign some files (replace 'acct.key' with your account private key). +STEP 1: You need to sign some files (replace 'user.key' with your account private key). -openssl dgst -sha256 -sign acct.key -out {} {} -openssl dgst -sha256 -sign acct.key -out {} {} -openssl dgst -sha256 -sign acct.key -out {} {} +openssl dgst -sha256 -sign user.key -out {} {} +openssl dgst -sha256 -sign user.key -out {} {} +openssl dgst -sha256 -sign user.key -out {} {} """.format( reg_file_sig_name, reg_file_name, @@ -252,9 +252,9 @@ sudo python -c "import BaseHTTPServer, ssl; \\ #Step 10: Ask the user to sign the certificate request sys.stderr.write(""" -STEP 3: You need to sign one more file (replace 'acct.key' with your account private key). +STEP 3: You need to sign one more file (replace 'user.key' with your account private key). -openssl dgst -sha256 -sign acct.key -out {} {} +openssl dgst -sha256 -sign user.key -out {} {} """.format(csr_file_sig_name, csr_file_name)) @@ -314,11 +314,11 @@ Prerequisites: Example: Generate an account keypair, a domain key and csr, and have the domain csr signed. -------------- -$ openssl genrsa -out acct.key 4096 -$ openssl rsa -in acct.key -pubout -out acct.pub -$ openssl genrsa -out domain.key 4096 -$ openssl req -new -sha256 -subj "/CN=test1.byofs.com" -key domain.key -out domain.csr -$ python sign_csr.py acct.pub domain.csr > signed.crt +$ openssl genrsa 4096 > user.key +$ openssl rsa -in user.key -pubout > user.pub +$ openssl genrsa 4096 > domain.key +$ openssl req -new -sha256 -key domain.key -subj "/CN=example.com" > domain.csr +$ python sign_csr.py user.pub domain.csr > signed.crt -------------- """) |