Monday, October 20, 2003

Using OpenSSL to set up your own CA

It took me quite a long time to track down these instructions. I've been looking for setting up SSL on tomcat/jetty (any web server, really) with client authentication and self-signed server certificates. Surprisingly, I had great difficulty in finding a resource with just the right set of incantations. 17 steps in all, including hand editing of some of the output files. Without these instructions, I wasn't going to get it right on my own. I'm hoping this post saves someone else some time.

If I ever meet Christopher Williams—whoever he is—,I'm buying him a beer. A really big one.

