Share
  1. cd /var/www/certs
  2. sudo openssl req -new -newkey rsa:2048 -nodes -keyout [DOMAIN].[YEAR].key -out [DOMAIN].[YEAR].csr -subj "/C=US/ST=Wisconsin/L=Madison/O=World Council of Credit Unions/OU=IT/CN=[DOMAIN]/emailAddress=webmaster@woccu.org"
  3.  sudo chmod 664 [DOMAIN].[YEAR].csr
  4. sudo chmod 664 [DOMAIN].[YEAR].key
  5. Upload to NameCheap
  6. Download Certfiles into /var/www/certs
    1. Rename them to our convention of [DOMAIN].[YEAR].xxx
    2. Update site file in /etc/apache2/sites-available/[DOMAIN].conf
  7. sudo service apache2 reload
  8. Delete old files cert files from webserver
  9. Move old cert files into "retired" directory in code base
  10. If you need the windows cert file
    sudo openssl pkcs12 -export -out [DOMAIN].[YEAR].pfx -inkey [DOMAIN].[YEAR].key -in [DOMAIN].[YEAR].crt -certfile [DOMAIN].[YEAR].ca-bundle

cd /var/www/certs
sudo openssl req -new -newkey rsa:2048 -nodes -keyout [DOMAIN].[YEAR].key -out [DOMAIN].[YEAR].csr -subj "/C=US/ST=Wisconsin/L=Madison/O=World Council of Credit Unions/OU=IT/CN=[DOMAIN]/emailAddress=webmaster@woccu.org"
sudo chmod 664 [DOMAIN].[YEAR].csr
sudo chmod 664 [DOMAIN].[YEAR].key
sudo chown [USER] [DOMAIN].[YEAR].csr
sudo chown [USER] [DOMAIN].[YEAR].key
sudo openssl pkcs12 -export -out [DOMAIN].[YEAR].pfx -inkey [DOMAIN].[YEAR].key -in [DOMAIN].[YEAR].crt -certfile [DOMAIN].[YEAR].ca-bundle