Download as txt, pdf, or txt
Download as txt, pdf, or txt
You are on page 1of 1

sudo service tomcat7 stop

acme.sh --issue -d *.example.com --standalone --httpport 80 --force


sudo service tomcat7 start

# generate keystore
keytool -genkey -alias tomcat -keyalg RSA -keystore .keystore -keysize 2048

# remember the password you set here. let's assume 'mypass'

keytool -importkeystore -srckeystore .keystore -destkeystore .keystore


-deststoretype pkcs12

# use the following lines also to renew a certificate!!


certdir=/root/.acme.sh/*.example.com
keystoredir=.keystore

keytool -delete -alias tomcat -storepass mypass -keystore $keystoredir


keytool -delete -alias root -storepass mypass -keystore $keystoredir

openssl pkcs12 -export -in $certdir/fullchain.cer -inkey


$certdir/yourdomain.tld.key -out $certdir/cert_and_key.p12 -name tomcat -CAfile
$certdir/fullchain.pem -caname root -password pass:mypass

keytool -importkeystore -srcstorepass mypass -deststorepass mypass -destkeypass


mypass -srckeystore $certdir/cert_and_key.p12 -srcstoretype PKCS12 -alias tomcat
-keystore $keystoredir

keytool -import -trustcacerts -alias root -deststorepass mypass -file


$certdir/fullchain.cer -noprompt -keystore $keystoredir

You might also like