Configure apache2 to use comodo essential ssl certificate

  • Generate key: openssl genrsa -out ssl_subdomain_com.key 2048
  • Create CSR: openssl req -new -key ssl_subdomain_com.key -out ssl_subdomain_com.csr
  • Check CSR: openssl req -noout -text -in ssl_subdomain_com.csr
  • Get your certificate from comodo
  • Chain certificate download from comodo → essential.cabundle
  • Get CRT after registration → ssl_subdomain_com.crt
  • Append chain certificate to crt: cp ssl_subdomain_com.crt ssl_subdomain_com.bundle.crt cat essential.cabundle » ssl_subdomain_com.bundle.crt

Configure apache2 w/gntls

    GnuTLSEnable on
    GnuTLSPriorities NORMAL
    GnuTLSCertificateFile /etc/ssl-cacert/apache/ssl_subdomain_com.bundle.crt
    GnuTLSKeyFile         /etc/ssl-cacert/apache/ssl_subdomain_com.key

