K
K
kmila2021-05-04 14:09:09
Digital certificates
kmila, 2021-05-04 14:09:09

What to do if the SSL certificate is connected incorrectly?

Good afternoon everyone.
When installing the SSL certificate, the window with certificate chains was not filled in for us, and now it does not work correctly and it is
impossible to create a secure connection via https.
Is it possible to somehow edit the certificate without creating a new one to add the chain? Or just re-release now?

Answer the question

In order to leave comments, you need to log in

2 answer(s)
A
Andrey Barbolin, 2021-05-04
@dronmaxman

There is no need to reissue, but for the first time, the task of collecting the chain can be difficult.
https://habr.com/ru/post/304458/

C
CityCat4, 2021-05-04
@CityCat4

You cannot edit the certificate.
Look up the issuer of the certificate, find its certificate, look up its issuer, find its certificate, and so on until the issuer is itself. Then we shove all found certificates (except our own) into trusted root centers.
Example.
There is a CA with CN=Zhopa and Ruchka Ltd. which has a subCA with CN=Ushi and Lapy and Hvost Ltd. which has a subCA with CN=Paradise Birds LLC which issues you a certificate.
- We are looking for the Paradise Birds LLC certificate, we see that the publisher is Ushi and Lapy and Hvost Ltd
- We are looking for the Ushi and Lapy and Hvost Ltd certificate, we see that the publisher is Zhopa and Ruchka Ltd
- We are looking for the Zhopa and Ruchka Ltd certificate, we see that there is a publisher he himself, so this is the root.
All found certificates are placed in trusted. In theory, it is enough to place the Zhopa and Ruchka Ltd certificate in the trusted ones, and when the search reaches it and sees that it is trusted, then everything should be fine, but this is more for insurance.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question