最近在倒腾ssl的时候,发现有时候生成的pem不是任何程序都能用,有时候需要用到crt格式的证书

确保有安装openssl

1.pem转crt格式

openssl x509 -in fullchain.pem -out fullchain.crt

具体用法为:

cd ..
openssl x509 -in /etc/letsencrypt/archive/domain/fullchain1.pem -out /etc/letsencrypt/archive/domain/fullchain1.crt

然后在这个路径找到转换好的证书/etc/letsencrypt/archive/domain

2.pem转key格式

openssl rsa -in privkey.pem -out privkey.key

具体用法为:

cd ..
openssl rsa -in /etc/letsencrypt/archive/domain/privkey1.pem -out /etc/letsencrypt/archive/domain/privkey1.key

然后在这个路径找到转换好的证书/etc/letsencrypt/archive/domain

评论已关闭