Validate SSL certificate using OpenSSL command

Check a Certificate Signing Request (CSR) $openssl req -text -noout -verify -in CSR.csr Check a private key $openssl rsa -in privateKey.key -check Check a certificate $openssl x509 -in certificate.crt -text -noout Check a PKCS#12 file (.pfx or .p12) $openssl pkcs12 -info -in keyStore.p12

Generate Certificate Request CSR with SANs using OpenSSL command

Create: san.cfg [ req ] default_bits       = 2048 distinguished_name = req_distinguished_name req_extensions     = req_ext prompt = no [ req_distinguished_name ] countryName                = Country Name (2 letter code) stateOrProvinceName        = State or Province Name (full name) localityName               = Locality Name (eg, city) organizationName           = Organization Name (eg, company) commonName                 = Common Name (e.g. server FQDN or YOUR name)…