Initial sslauth doc
This commit is contained in:
parent
01fd505591
commit
c1c450c334
|
@ -16,4 +16,29 @@ Ce que l'on sait moins, c'est que SSL/TLS permet aussi l'authentification des cl
|
|||
|
||||
$ openssl version
|
||||
OpenSSL 1.0.2h 3 May 2016
|
||||
~~~
|
||||
~~~
|
||||
|
||||
## Coté serveur
|
||||
|
||||
### Apache
|
||||
|
||||
~~~
|
||||
SSLCACertificateFile /etc/ssl/certs/CA.pem
|
||||
SSLVerifyDepth 1
|
||||
SSLVerifyClient require
|
||||
~~~
|
||||
|
||||
### Nginx
|
||||
|
||||
~~~
|
||||
ssl_client_certificate /etc/ssl/certs/CA.pem;
|
||||
ssl_verify_client require;
|
||||
~~~
|
||||
|
||||
## Coté client
|
||||
|
||||
### Curl
|
||||
|
||||
~~~
|
||||
curl --cert ./client.crt --key ./client.key -u "user:pass" "https://example.com"
|
||||
~~~
|
||||
|
|
Loading…
Reference in a new issue