@@ -32,7 +32,7 @@ openssl ca -batch -config ./certs/ecc/wolfssl.cnf -gencrl -crldays 1000 -out ./c
3232
3333
3434# Generate ECC 256-bit server cert
35- openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc-key.pem -out ./certs/server-ecc-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
35+ openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc-key.pem -out ./certs/server-ecc-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
3636openssl x509 -req -in ./certs/server-ecc-req.pem -CA ./certs/ca-ecc-cert.pem -CAkey ./certs/ca-ecc-key.pem -CAcreateserial -out ./certs/server-ecc.pem -sha256
3737
3838# Sign server certificate
@@ -70,14 +70,14 @@ openssl ca -batch -config ./certs/ecc/wolfssl_384.cnf -gencrl -crldays 1000 -out
7070# Generate ECC 384-bit server cert
7171if [ -f ./certs/server-ecc384-key.pem ]; then
7272 openssl req -config ./certs/ecc/wolfssl_384.cnf -sha384 -x509 -nodes -key ./certs/server-ecc384-key.pem -out ./certs/server-ecc384-req.pem \
73- -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC384Srv/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
73+ -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC384Srv/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
7474else
7575 openssl ecparam -out ./certs/server-ecc384-key.par -name secp384r1
7676 openssl req -config ./certs/ecc/wolfssl_384.cnf -sha384 -x509 -nodes -newkey ec:./certs/server-ecc384-key.par -keyout ./certs/server-ecc384-key.pem -out ./certs/server-ecc384-req.pem \
77- -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC384Srv/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
77+ -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC384Srv/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
7878fi
7979openssl req -config ./certs/ecc/wolfssl_384.cnf -sha384 -new -key ./certs/server-ecc384-key.pem -out ./certs/server-ecc384-req.pem \
80- -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC384Srv/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
80+ -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC384Srv/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
8181openssl ec -in ./certs/server-ecc384-key.pem -inform PEM -out ./certs/server-ecc384-key.der -outform DER
8282
8383# Sign server certificate
@@ -90,14 +90,14 @@ rm ./certs/server-ecc384-key.par
9090# Generate ECC 384-bit client cert
9191if [ -f ./certs/client-ecc384-key.pem ]; then
9292 openssl req -config ./certs/ecc/wolfssl_384.cnf -sha384 -x509 -nodes -key ./certs/client-ecc384-key.pem -out ./certs/client-ecc384-req.pem \
93- -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC384Cli/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
93+ -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC384Cli/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
9494else
9595 openssl ecparam -out ./certs/client-ecc384-key.par -name secp384r1
9696 openssl req -config ./certs/ecc/wolfssl_384.cnf -sha384 -x509 -nodes -newkey ec:./certs/client-ecc384-key.par -keyout ./certs/client-ecc384-key.pem -out ./certs/client-ecc384-req.pem \
97- -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC384Cli/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
97+ -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC384Cli/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
9898fi
9999openssl req -config ./certs/ecc/wolfssl_384.cnf -sha384 -new -key ./certs/client-ecc384-key.pem -out ./certs/client-ecc384-req.pem \
100- -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC384Clit/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
100+ -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC384Clit/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
101101openssl ec -in ./certs/client-ecc384-key.pem -inform PEM -out ./certs/client-ecc384-key.der -outform DER
102102
103103# Sign client certificate
@@ -114,12 +114,12 @@ if [ -f ./certs/ecc/secp256k1-key.pem ]; then
114114 openssl ec -in ./certs/ecc/secp256k1-key.pem -inform PEM -out ./certs/ecc/secp256k1-key.der -outform DER
115115fi
116116# Create self-signed ECC Kerberos certificates
117- openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc/secp256k1-key.pem -out ./certs/ecc/server-secp256k1-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC256K1-SRV/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
117+ openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc/secp256k1-key.pem -out ./certs/ecc/server-secp256k1-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC256K1-SRV/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
118118openssl x509 -req -in ./certs/ecc/server-secp256k1-req.pem -days 3650 -extfile ./certs/ecc/wolfssl.cnf -extensions server_cert -signkey ./certs/ecc/secp256k1-key.pem -text -out ./certs/ecc/server-secp256k1-cert.pem
119119openssl x509 -inform pem -in ./certs/ecc/server-secp256k1-cert.pem -outform der -out ./certs/ecc/server-secp256k1-cert.der
120120rm ./certs/ecc/server-secp256k1-req.pem
121121
122- openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc/secp256k1-key.pem -out ./certs/ecc/client-secp256k1-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC256K1-CLI/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
122+ openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc/secp256k1-key.pem -out ./certs/ecc/client-secp256k1-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC256K1-CLI/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
123123openssl x509 -req -in ./certs/ecc/client-secp256k1-req.pem -days 3650 -extfile ./certs/ecc/wolfssl.cnf -extensions usr_cert -signkey ./certs/ecc/secp256k1-key.pem -text -out ./certs/ecc/client-secp256k1-cert.pem
124124openssl x509 -inform pem -in ./certs/ecc/client-secp256k1-cert.pem -outform der -out ./certs/ecc/client-secp256k1-cert.der
125125rm ./certs/ecc/client-secp256k1-req.pem
@@ -130,12 +130,12 @@ if [ -f ./certs/ecc/bp256r1-key.pem ]; then
130130 openssl ec -in ./certs/ecc/bp256r1-key.pem -inform PEM -out ./certs/ecc/bp256r1-key.der -outform DER
131131fi
132132# Create self-signed ECC Brainpool certificates
133- openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc/bp256r1-key.pem -out ./certs/ecc/server-bp256r1-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC256BPR1-SRV/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
133+ openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc/bp256r1-key.pem -out ./certs/ecc/server-bp256r1-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC256BPR1-SRV/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
134134openssl x509 -req -in ./certs/ecc/server-bp256r1-req.pem -days 3650 -extfile ./certs/ecc/wolfssl.cnf -extensions server_cert -signkey ./certs/ecc/bp256r1-key.pem -text -out ./certs/ecc/server-bp256r1-cert.pem
135135openssl x509 -inform pem -in ./certs/ecc/server-bp256r1-cert.pem -outform der -out ./certs/ecc/server-bp256r1-cert.der
136136rm ./certs/ecc/server-bp256r1-req.pem
137137
138- openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc/bp256r1-key.pem -out ./certs/ecc/client-bp256r1-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Eliptic /OU=ECC256BPR1-CLI/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
138+ openssl req -config ./certs/ecc/wolfssl.cnf -sha256 -new -key ./certs/ecc/bp256r1-key.pem -out ./certs/ecc/client-bp256r1-req.pem -subj " /C=US/ST=Washington/L=Seattle/O=Elliptic /OU=ECC256BPR1-CLI/CN=www.wolfssl.com/emailAddress=info@wolfssl.com/"
139139openssl x509 -req -in ./certs/ecc/client-bp256r1-req.pem -days 3650 -extfile ./certs/ecc/wolfssl.cnf -extensions usr_cert -signkey ./certs/ecc/bp256r1-key.pem -text -out ./certs/ecc/client-bp256r1-cert.pem
140140openssl x509 -inform pem -in ./certs/ecc/client-bp256r1-cert.pem -outform der -out ./certs/ecc/client-bp256r1-cert.der
141141rm ./certs/ecc/client-bp256r1-req.pem
0 commit comments