How to install SSL certificate in opsi?
Verfasst: 22 Jan 2018, 09:20
				
				Hi everyone,
I have a problem about SSL certificate.
OS: debian 9.3 in hyper-V
computer name : abc.domain.com
public ip address : abc.domain.com
I already have a wildcard SSL certificates by another IIS web server and verifyed by COMODO.
When I install opsi by installation manual, In the step
I need  enter the self-signed SSL content.
http://download.uib.de/opsi_stable/doc/ ... ble-en.pdf
page.18
The IIS SSL is .pfx, so I use openssl to get server.key, server.pem and ca.crt.
private key = server.key
server key = server.pem
comodo ca = ca.crt
There are default SSL file path in /etc/opsi/opsiconfd.conf
I type opsi url https://(server_internal_IP):4447/ 
then browser show "Your connection is not secure" because I know the ssl is self-signed.
I type opsi url https://abc.domain.com:4447/
"Your connection is not secure".
Then I change the default ssl and restart opsiconfd.
I type opsi url https://abc.domain.com:4447/
Browser show" Unable to connect".
https://(server_internal_IP):4447/
Browser show "Unable to connect".
Does anyone know how to install ssl in opsi currently?
			I have a problem about SSL certificate.
OS: debian 9.3 in hyper-V
computer name : abc.domain.com
public ip address : abc.domain.com
I already have a wildcard SSL certificates by another IIS web server and verifyed by COMODO.
When I install opsi by installation manual, In the step
Code: Alles auswählen
# aptitude install opsi-configedhttp://download.uib.de/opsi_stable/doc/ ... ble-en.pdf
page.18
The IIS SSL is .pfx, so I use openssl to get server.key, server.pem and ca.crt.
private key = server.key
server key = server.pem
comodo ca = ca.crt
There are default SSL file path in /etc/opsi/opsiconfd.conf
Code: Alles auswählen
[service]
ssl server cert = /etc/opsi/opsiconfd.pem
ssl server key = /etc/opsi/opsiconfd.pem
then browser show "Your connection is not secure" because I know the ssl is self-signed.
I type opsi url https://abc.domain.com:4447/
"Your connection is not secure".
Then I change the default ssl and restart opsiconfd.
Code: Alles auswählen
[service]
ssl server cert = /etc/opsi/server.pem
ssl server key = /etc/opsi/server.key
Code: Alles auswählen
#service opsiconfd restart
Browser show" Unable to connect".
https://(server_internal_IP):4447/
Browser show "Unable to connect".
Does anyone know how to install ssl in opsi currently?