transfering an SSL certificate to new server

This is a discussion on transfering an SSL certificate to new server within the Linux Web Servers forums, part of the Web Server and Related Forums category; Our old server, a RedHat ES2 with Apache 1.3.27 was compromised and we're migrating to a new ...


Go Back   Usenet Forums > Web Server and Related Forums > Linux Web Servers

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 11-17-2005
news@celticbear.com
 
Posts: n/a
Default transfering an SSL certificate to new server

Our old server, a RedHat ES2 with Apache 1.3.27 was compromised and
we're migrating to a new box with RH ES4 and Apache 2.0.52.

It's a safe assumption that I can't just copy over the ssl.crt/ and
ssl.key/ files from one to the other machine, right?
(Actually, I tried it already. And yeah, it gives the same default info
when you view the cert threw the browser.)

I have an O'Reilly book on Apache that explains how to create a new
cert setup, but I was wondering if there's any way to nice and easily
transfer the key from one server to the other?

If there's a RTFM directive on transfering, please let me know what FM
I need to read and I will gladly do so! =)

Thanks for any feedback
Liam

  #2 (permalink)  
Old 11-18-2005
Nico Kadel-Garcia
 
Posts: n/a
Default Re: transfering an SSL certificate to new server


<news@celticbear.com> wrote in message
news:1132252624.143889.5920@g49g2000cwa.googlegrou ps.com...
> Our old server, a RedHat ES2 with Apache 1.3.27 was compromised and
> we're migrating to a new box with RH ES4 and Apache 2.0.52.
>
> It's a safe assumption that I can't just copy over the ssl.crt/ and
> ssl.key/ files from one to the other machine, right?
> (Actually, I tried it already. And yeah, it gives the same default info
> when you view the cert threw the browser.)


If the box was compromised, you should throw them out. If you really feel
the need to use the old ones, you can use them on the new box as long as
they're on the same hostname. May I suggest reading the manpages for the
openssl software, and the documentation on www.openssl.org?



 


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 05:14 AM.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0