Koozali.org: home of the SME Server
Obsolete Releases => SME 9.x Contribs => Topic started by: ttech on July 02, 2019, 02:25:20 PM
-
Hi!
On a new server, I was installing openssl + phpki and an error occurred. While creating the initial CA certificate for the server, it produced a rather short certificate... about 10 lines. This seems too low (for 2048/15yrs).
Is there an recommended way to delete the current CA one and generate a new one? I didn't find anything about regeneration in the forum or wiki page.
Thanks in advice for any pointers for how to fix this. BTW, I followed the wiki on uninstalling and re-installed it, but the certs on try 2 were short also. Did the initial install leave something behind after the removal of the /opt/phpki directory (per the wiki)?
-
Just go to PHPKi / Manage certificates and you will see an option to revoke certificate. Once you revoke a certificate, you will be able to generate a new one.
I also have (for 2048/15yrs) and my CA certificate is about 28 lines long.
-
If anyone is interested I am doing a big update on phpki.
The old version has a lot of issues. The new one fixes them and massively increases the security.
If you want to help test then let me know. I really needs some hands on it.
I can give you a login to our rocket.chat instance where you can join in the conversation.
Let me know.