๋ณธ๋ฌธ ๋ฐ”๋กœ๊ฐ€๊ธฐ

Back-end/Server

[ OpenSSL ] OpenSSL์„ ์‚ฌ์šฉํ•œ SSL ์ธ์ฆ์„œ ๋งŒ๋ฃŒ์ผ ํ™•์ธ

 

 

 

 

 

๐Ÿ“œ [OpenSSL] SSL ์ธ์ฆ์„œ ๋งŒ๋ฃŒ ํ™•์ธ

 

OpenSSL ์„ค์น˜

https://euntry.tistory.com/84

 

[ WINDOWS ] Open SSL ์„ค์น˜

https://slproweb.com/products/Win32OpenSSL.html Win32/Win64 OpenSSL Installer for Windows - Shining Light ProductionsMinimum system requirements: Windows XP or later 32MB RAM 200MHz CPU 30MB hard drive space Recommended system requirements: Windows XP or l

euntry.tistory.com

 

 

 

 

๐Ÿ”Ž ์ธ์ฆ์„œ ๋งŒ๋ฃŒ์ผ ํ™•์ธ ๋ช…๋ น์–ด 

 

openssl pkcs12 -in [์ธ์ฆ์„œํŒŒ์ผ๋ช….p12] -nokeys | openssl x509 -noout -dates

 

  • -in: ์ž…๋ ฅํ•  ์ธ์ฆ์„œ ํŒŒ์ผ
  • -nokeys: ๊ฐœ์ธํ‚ค ์ œ์™ธ
  • -noout -dates: ๋‚ ์งœ๋งŒ ์ถœ๋ ฅ

๋ช…๋ น์–ด ์ž…๋ ฅ ํ›„ ์ธ์ฆ์„œ ํŒจ์Šค์›Œ๋“œ ์ž…๋ ฅ

 

 

 

์ถœ๋ ฅ ์˜ˆ์‹œ

notBefore=Jan  1 00:00:00 2024 GMT
notAfter=Dec 31 23:59:59 2025 GMT

 

 

 

 

 

 

๐Ÿ”ง ์˜ค๋ฅ˜ ๋ฐœ์ƒ

 

OpenSSL 3.0 ์ด์ƒ์—์„œ ๋‹ค์Œ๊ณผ ๊ฐ™์€ ์˜ค๋ฅ˜๊ฐ€ ๋ฐœ์ƒํ•  ์ˆ˜ ์žˆ๋‹ค

 

Error outputting keys and certificates
D05A0000:error:0308010C:digital envelope routines:inner_evp_generic_fetch:unsupported:crypto\evp\evp_fetch.c:375:Global default library context, Algorithm (RC2-40-CBC : 0), Properties ()
Could not find certificate from <stdin>

 

์ด ์˜ค๋ฅ˜๋Š” RC2์™€ ๊ฐ™์€ Legacy Provider ์•Œ๊ณ ๋ฆฌ์ฆ˜์ด ๊ธฐ๋ณธ์ ์œผ๋กœ ๋น„ํ™œ์„ฑํ™”๋œ ๊ฒฝ์šฐ ๋ฐœ์ƒ..

 

 

 

๐Ÿ› ๏ธ ํ•ด๊ฒฐ ๋ฐฉ๋ฒ•

 

Legacy Provider ์ˆ˜๋™ ๋กœ๋“œ ๋ช…๋ น์–ด ์‚ฌ์šฉ

 

openssl pkcs12 -legacy -in test.p12 -nokeys | openssl x509 -noout -dates

 

  • -legacy: Legacy Provider ํ™œ์„ฑํ™” 

๋ฌธ์ œ ์—†์„์‹œ ์ธ์ฆ์„œ ํŒจ์Šค์›Œ๋“œ๋ฅผ ๋ฌป๋Š” ๋ฌธ๊ตฌ๊ฐ€ ์ถœ๋ ฅ๋œ๋‹ค 

ํŒจ์Šค์›Œ๋“œ ์ž…๋ ฅ ํ›„ ์ •์ƒ ์ถœ๋ ฅ ํ™•์ธ ๊ฐ€๋Šฅ

 

 

 

 

 

 

ํ•˜์ง€๋งŒ ๋‚˜๋Š”.. ๋‹ค์‹œ ์˜ค๋ฅ˜ ๋ฐœ์ƒ..

 

๐Ÿ”ง ์˜ค๋ฅ˜ ๋ฐœ์ƒ

 

list: unable to load provider legacy
Hint: use -provider-path option or OPENSSL_MODULES environment variable.
88030000:error:12800067:DSO support routines:win32_load:could not load the shared library:crypto\dso\dso_win32.c:108:filename(C:\Program Files\OpenSSL\lib\ossl-modules\legacy.dll)
88030000:error:12800067:DSO support routines:DSO_load:could not load the shared library:crypto\dso\dso_lib.c:147:
88030000:error:07880025:common libcrypto routines:provider_init:reason(37):crypto\provider_core.c:1019:name=legacy

 

์ด ์˜ค๋ฅ˜๋Š” legacy.dll ํŒŒ์ผ์„ ์ฐพ์ง€ ๋ชปํ•˜๋Š” ๊ฒฝ์šฐ..

OpenSSL ์„ค์น˜ ๊ฒฝ๋กœ๋กœ ์ ‘๊ทผํ•˜์—ฌ legacy.dll ํŒŒ์ผ ์ฐพ๊ธฐ

(๋‚˜ ๊ฐ™์€ ๊ฒฝ์šฐ bin ํด๋” ํ•˜์œ„์— ์žˆ์—ˆ์Œ..)

 

 

 

๐Ÿ› ๏ธ ํ•ด๊ฒฐ ๋ฐฉ๋ฒ• (2๊ฐ€์ง€)

 

1. OPENSSL_MODULES ํ™˜๊ฒฝ ๋ณ€์ˆ˜ ์„ค์ •

2. -provider-path ์˜ต์…˜ ์‚ฌ์šฉ

 

openssl pkcs12 -provider-path "C:\Program Files\OpenSSL-Win64\bin" -legacy -in test.p12 -nokeys | openssl x509 -noout -dates

 

  • -provider-path: legacy.dll ํŒŒ์ผ์ด ์žˆ๋Š” ํด๋”๋ฅผ ์ง์ ‘ ์ง€์ •

 


์ถœ๋ ฅ ์˜ˆ์‹œ

notBefore=Jan  1 00:00:00 2024 GMT
notAfter=Dec 31 23:59:59 2025 GMT

 

 

ํ•ด๋‹น ๋ช…๋ น์–ด ์‚ฌ์šฉ์œผ๋กœ ์ •์ƒ ์ถœ๋ ฅ ํ™•์ธ