본문 바로가기
OS/Linux

centos 7 / tomcat / SSL / https / let's encrypt

by 하하IT 2020. 4. 29.

Apache Tomcat Version 7.0.82
openjdk version "1.8.0_242"
CentOS Linux release 7.8


yum -y update

yum -y upgrade

yum install -y gcc gcc-c++ wget perl-devel curl-devel git

cd /opt

git clone https://github.com/letsencrypt/letsencrypt

cd /opt/letsencrypt


./letsencrypt-auto certonly --manual --email [이메일 주소] -d [사용할 도메인주소]

A - N - Y



- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Create a file containing just this data:

F26LwBt4MA9FKc9YbvtfBYF9C-8b0Yg5rv9-r3osSaM.iiVvVromy4wDYib_tgMtnWztKscMcBrBZRwKVW8SXGU

And make it available on your web server at this URL:

http://[사용할 도메인주소]/.well-known/acme-challenge/F26LwBt4MA9FKc9YbvtfBYF9C-8b0Yg5rv9-r3osSaM


- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -


mkdir -p /opt/apache-tomcat-7.0.82/webapps/ROOT/.well-known/acme-challenge/

cd /opt/apache-tomcat-7.0.82/webapps/ROOT/.well-known/acme-challenge/


cd /etc/letsencrypt/live/[사용할 도메인주소]/

openssl rsa -in privkey.pem -text > devbit.key

openssl x509 -inform PEM -in fullchain.pem -out devbit.crt


openssl pkcs12 -export -in devbit.crt -inkey devbit.key -out devbit.p12 -name tomcat
[비밀번호]입력 

keytool -list -v -keystore devbit.p12 -storetype pkcs12
[비밀번호]입력 


server.xml

    maxThreads="150" enableLookups="false" acceptCount="100"
    connectionTimeout="20000" disableUploadTimeout="true"
    protocol="org.apache.coyote.http11.Http11NioProtocol"
    SSLEnabled="true" scheme="https" secure="true" clientAuth="false" sslProtocol="TLS"
    keystoreFile="/etc/letsencrypt/live/[도메인주소]/devbit.p12"
    keystoreType="PKCS12"
    keystorePass="[비밀번호]"
/>



web.xml


    
        
            HTTP
            /*
        
        
            CONFIDENTIAL
        
    






'OS > Linux' 카테고리의 다른 글

centos 7 / docker install  (0) 2020.05.29
centos 7 / let's Encrypt / tomcat 8  (0) 2020.05.04
Let’s Encrypt / certbot-auto  (0) 2020.04.28
ubuntu / 우분투 네트워크 설정  (0) 2020.04.27
ubuntu / usb인식  (0) 2020.04.27