Making a self-signed TLS certificate: Difference between revisions

m Added changes for TLS, added new link location
Line 1: Line 1:
Sending data over the internet unencrypted means anybody with the right tools can see this data. Making a certificate means that you can then encrypt the data. This means that the data is no longer readable to anybody that doesn't have your certificate. This guide will show you how to make a certificate authority, sign and make an SSL certificate ready to be used by your web server.
Sending data over the internet unencrypted means anybody with the right tools can see this data. Making a certificate means that you can then encrypt the data. This means that the data is no longer readable to anybody that doesn't have your certificate. This guide will show you how to make a certificate authority, sign and make an TLS certificate ready to be used by your web server.


Due to the way the encryption landscape has changed on the internet, we will be creating a ECDSA certificate. EC stands for Elliptic Curve and uses prime number curves which allow smaller key sizes for the same amount or better protection than the larger traditional key sizes.
Due to the way the encryption landscape has changed on the internet, we will be creating a ECDSA certificate. EC stands for Elliptic Curve and uses prime number curves which allow smaller key sizes for the same amount or better protection than the larger traditional key sizes.
SSL is now deprecated and disabled on most modern browsers. We refer to SSL as TLS as this protocol replaced SSL and is supported by most browsers to some extent and is now what is used by default.


== What you need to know ==
== What you need to know ==
Line 50: Line 52:
See the following article:
See the following article:


[[Securing Apache with an SSL/TLS certificate]]
[[Apache HTTP Server#HTTPS.2FTLS|HTTPS/TLS in Apache HTTP Server article]]


== External Links ==
== External Links ==