May
6
2010
6
2010
Removing the Password on an Apache SSL Certificate


Every once in a while I run across an SSL Cert with an included password. Although the security is great automating an environment or an Apache restart with required interaction is problematic.
Here is an example of the interaction with a password included SSL Cert:
[root@w2 conf.d]# /etc/init.d/httpd restart Stopping httpd: [ OK ] Starting httpd: Apache/2.2.8 mod_ssl/2.2.8 (Pass Phrase Dialog) Some of your private key files are encrypted for security reasons. In order to read them you have to provide the pass phrases. Server neilfrpst.com:443 (RSA) Enter pass phrase: OK: Pass Phrase Dialog successful.
And here is how you remove the password:
[root@w2 conf]# openssl rsa -in neilfrost.com.key -out neilfrost.com.key.nopass
You then need to change /etc/httpd/conf.d/ssl.conf so that it uses the new key
Tag Cloud
2008 Ford Mondeo Titanium X
alphacourse
bertweedon
BHF
bible
bike ride
Billy Graham
christmas eve
explosion
Gary Moore
guitartuner
Ignite the flame
Jesus
London to Southend
mic cables
Nissan Qashqai+2 Tekna Red
onsong
pa
parentingcourse
pedalboard
playinaday
qashqai
Rock Thurrock
senseatlast
snowday
squirrel
sundaysetlist
tftd
twentysevenmillion
updated
vbs
WhitneyHouston
windows
worship
worshipleading
Worship Leading
worshipset
wscript
XenAPP