Nxfilter ssl certificate error9/21/2023 ![]() ![]() Note that if you are using a self-signed SSL certificate, you may need to add the certificate to your browser’s trusted root certificate store in order to access the NxFilter web interface without security warnings. You can verify this by accessing the NxFilter web interface using HTTPS and checking that the browser shows your custom SSL certificate as the site’s security certificate. systemctl restart nxfilterĪfter following these steps, NxFilter should be using your custom SSL certificate for HTTPS connections. You can set your JSK file like below, keystore_file = conf/myown.jks One is ‘keystore_file’ and the other one is ‘keystore_pass’. And then you set two parameters in /nxfilter/conf/cfg.properties file. My own mail server (only running locally, but containing tons of emails) gets the official emails via fetchmail over ssl from my provider. If you already have a CRT format certificate, you need to convert it to a JKS file by follow above instructions. I've set up nxfilter on my ubuntu 18.04 server as the DNS Server for my family's network as well as a filter for our network. ![]() Now to use your own SSL certificate, what you have to use Java KeyStore or JKS file which we have created above. keytool -importkeystore -srckeystore anyrandomname.jks -destkeystore anyrandomname.jks -deststoretype pkcs12 Kindly change the name Anynameyoucanuse.p12 and anyrandomname.jks with actual SSL names you want. Then you can run above command to convert. keytool -importkeystore -srckeystore Anynameyoucanuse.p12 \ Kindly make sure that SSLcertificatefilename is having all the certificate, key, CSR etc. In above command we are converting normal SSL certificate into. openssl pkcs12 -export -in SSLcertificatefilename -out Anynameyoucanuse.p12 Custom CN name>-cert.zip For instance, if you change the CN name in the name.txt file to 'NxCloud' and restart the sslsplit service, the actual zip file of the created certificate would be 'nxcloud-cert.zip'. To convert normal CRT file into JKS run below commands on the same server. These files should be in the PEM format and you have to convert the file in JKS (Java keystore) Select 'Place all certificates in the following store' and click the Browse button. Select 'Local Machine' for the Store Location and click Next. Right click on the ca.crt file and select 'Install Certificate'. Extract ca.crt file from the nxfilter-cert.zip file. To install a custom SSL certificate on NxFilter, you can follow the steps below:įirst, create or obtain your custom SSL certificate and key files. Download the nxfilter-cert.zip from your server.
0 Comments
Leave a Reply.AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |