Breaking

Tuesday 23 March 2021

Configure Godaddy SSL on RHEL 7 Apache tomcat 8.5



Create KeyStore 


keytool -genkey -alias server -keyalg RSA -keysize 2048 -keystore server.jks


Create CSR


keytool -certreq -alias server -file csr.txt -keystore server.jks


With created CSR create SSL in Godaddy


After some time you will receive the mail with SSL cert link from Godaddy


download Godaddy SSL zip for Tomcat > Unzip SSL zip file


[root@myserver]# ls -ltr

gdig2.crt.pem

gd_bundle-g2-g1.crt

9f2a78536f6.pem

9f2a78536f6.crt

csr.txt

server.jks


--------Go Daddy-----------import ssl cert---------------


  keytool -import -alias root -keystore server.jks -trustcacerts -file gd_bundle-g2-g1.crt


  keytool -import -alias server -keystore server.jks -trustcacerts -file 9f21db1fa78536f6.crt


  keytool -list -v -keystore server.jks


----------server.xml------------made this change in tomcat server.xml file-----------------



<Connector port="443" protocol="org.apache.coyote.http11.Http11NioProtocol" maxHttpHeaderSize="8192" maxThreads="150"

           minSpareThreads="25" maxSpareThreads="75"

           enableLookups="false" disableUploadTimeout="true"

           acceptCount="100" scheme="https" secure="true"

           SSLEnabled="true" clientAuth="false"

           sslProtocol="TLS" keyAlias="server"

           keystoreFile="/opt/tomcat8.5/conf/ssl/server.jks"

           keystorePass="server@1234" />



----------------------------------------------------


systemctl restart tomcat


----------------------------------------------------


Done...





1 comment: