Unable To Load Config Info From C /lan/ssl/openssl.cnf

If you only have one intermediate certificate in our example, you receive these three certificates from the CA:Note: Make sure that the certificate is Apache compatible with SHA1 encryption Root certificate.pemIntermediate

You might the following error if you try to mix name-based virtual hosts with SSL. [error] VirtualHost _default_:443 -- mixing * ports and non-* ports with a

  • openssl x509 -in server.csr -out server.crt -req -signkey server.key -days 365 This creates a self-signed certificate that you can use until you get a "real" o­ne from a certificate authority. (Which
  • Don't mix Apache versions 1.3 and 2!
  • If you find 1.3.x o­n modssl.org, you cannot expect it to work with 2.0.x.
  • You can verify this by copying openssl.exe into a directory of its own and executing it.
  • Consult the OpenSSL documentation available at openssl.org for more information.
  • Find the LoadModule directives in your httpd.conf file and add this after the existing o­nes, according to the file you have found in the distribution:

    All openssl commands worked normally after that. You'll need a config file for openssl.exe. What is the determinant?

    run as admin and system reboot] did, 1.[Error Case] C:\OpenSSL-Win64\bin>openssl req -new -key server.key -out server.csr WARNING: can't open config file: C:\OpenSSL-Win64\bin\openssl.cnf AND Unable to load config info from C:\OpenSSL-Win64\bin\openssl.cnf 2.[Worked Notice the port numbers I use for IMAP (993) POP3 (995) seem to be the default secure ports for these two protocols.

    After downloading, put this file into your modules directory and rename it mod_jk.so. openssl rsa -in privkey.pem -out server.key This removes the passphrase from the private key.

    Download and install Cygwin from http://www.cygwin.com. If you are using Cygwin, o­ne will already exist for you.

    If it doesn't work, Apache should write meaningful messages to the screen and/or into the error.log and SSL.log files in the Apache/logs directory. This is a self-extracting archive that contains the Apache base system and sample configuration files.

    If you have users with MS Internet Explorer 4.0+ and want them to be able to install the certificate into their certificate storage (by downloading and opening it), you need to

    how do you guys set it? –kewlbfy Dec 17 '15 at 14:01 1 @kewlbfy see @Kosar answer below for where to use the -config flag, this worked for me –danjah

    So if you get this error despite having done everything correctly, try the openssl DLLs from another version from modssl.org/contrib. then: openssl req -new -key server.key -out server.csr -config C:\openssl.cnf Worked perfectly. OpenSSL shows the information it obtained from the server.CONNECTED(00000003) depth=0 /C=at/ST=Wien/L=Wien/O=APC interactive/OU=Lifecycle [email protected].net verify error:num=18:self signed certificate verify return:1 depth=0 /C=at/ST=Wien/L=Wien/O=APC interactive/OU=Lifecycle [email protected].net verify return:1 --- Certificate chain 0 s:/C=at/ST=Wien/L=Wien/O=APC interactive/OU=Lifecycle

    Fix: CSR Generation - OpenSSL error: "Unable to load config info from"

    I have Apache 2.043, and the latest version of Cygwin as of October 16 - they don't use version numbers any longer. 1: RE: "You'll need a config file for openssl.exe.

    SSL 465 and 995 work with Outlook, web, and iPhone.

    If you need the newest version, you will have to compile it yourself if it is not there. When asked for "Common Name (eg, your websites domain name)", give the exact domain name of your web server (e.g. I use Windows Live Mail which I've configured to pull email from one of the test accounts I've setup on hMailServer.

