openssl-ts.md 1.0 KB

openssl ts

OpenSSL ๋ช…๋ น์–ด๋กœ ํƒ€์ž„์Šคํƒฌํ”„๋ฅผ ์ƒ์„ฑํ•˜๊ณ  ๊ฒ€์ฆํ•ฉ๋‹ˆ๋‹ค. ๋” ๋งŽ์€ ์ •๋ณด: https://www.openssl.org/docs/manmaster/man1/openssl-ts.html.

  • ํŠน์ • ํŒŒ์ผ์˜ SHA-512 ํƒ€์ž„์Šคํƒฌํ”„ ์š”์ฒญ์„ ์ƒ์„ฑํ•˜๊ณ  file.tsq์— ์ถœ๋ ฅ:

openssl ts -query -data {{๊ฒฝ๋กœ/๋Œ€์ƒ/ํŒŒ์ผ}} -sha512 -out {{๊ฒฝ๋กœ/๋Œ€์ƒ/ํŒŒ์ผ.tsq}}

  • ํŠน์ • ํƒ€์ž„์Šคํƒฌํ”„ ์‘๋‹ต ํŒŒ์ผ์˜ ๋‚ ์งœ ๋ฐ ๋ฉ”ํƒ€๋ฐ์ดํ„ฐ ํ™•์ธ:

openssl ts -reply -in {{๊ฒฝ๋กœ/๋Œ€์ƒ/ํŒŒ์ผ.tsr}} -text

  • SSL ์ธ์ฆ์„œ ํŒŒ์ผ์„ ์‚ฌ์šฉํ•˜์—ฌ ์„œ๋ฒ„๋กœ๋ถ€ํ„ฐ ํƒ€์ž„์Šคํƒฌํ”„ ์š”์ฒญ ํŒŒ์ผ๊ณผ ํƒ€์ž„์Šคํƒฌํ”„ ์‘๋‹ต ํŒŒ์ผ ๊ฒ€์ฆ:

openssl ts -verify -in {{๊ฒฝ๋กœ/๋Œ€์ƒ/ํŒŒ์ผ.tsr}} -queryfile {{๊ฒฝ๋กœ/๋Œ€์ƒ/ํŒŒ์ผ.tsq}} -partial_chain -CAfile {{๊ฒฝ๋กœ/๋Œ€์ƒ/cert.pem}}

  • ํ‚ค ๋ฐ ์„œ๋ช… ์ธ์ฆ์„œ๋ฅผ ์‚ฌ์šฉํ•˜์—ฌ ์š”์ฒญ์— ๋Œ€ํ•œ ํƒ€์ž„์Šคํƒฌํ”„ ์‘๋‹ต์„ ์ƒ์„ฑํ•˜๊ณ  file.tsr์— ์ถœ๋ ฅ:

openssl ts -reply -queryfile {{๊ฒฝ๋กœ/๋Œ€์ƒ/ํŒŒ์ผ.tsq}} -inkey {{๊ฒฝ๋กœ/๋Œ€์ƒ/tsakey.pem}} -signer tsacert.pem -out {{๊ฒฝ๋กœ/๋Œ€์ƒ/ํŒŒ์ผ.tsr}}