Daim Ntawv Pem Yog Dab Tsi?

Yuav ua li cas qhib, hloov, thiab hloov PEM cov ntaub ntawv

Ib cov ntaub ntawv nrog PEM cov ntaub ntawv ncua ntxiv yog Daim Ntawv Qhia Kev Xa Ntawv Zoo Siv Xa Ntawv siv rau cov tib neeg xa email. Tus neeg tau txais qhov email no muaj peev xwm ntseeg hais tias cov lus tsis hloov thaum lub sij hawm nws sib kis tau, tsis tau qhia rau leej twg, thiab raug xa los ntawm tus neeg uas thov kom xa nws.

Cov PEM hom tawm ntawm qhov nyuaj ntawm xa cov ntaub ntawv binary hauv email. PEM hom ntawv coded binary nrog base64 kom nws tshwm sim li ASCII hlua.

PEM hom tau raug hloov los ntawm cov cuab yeej tshiab thiab ntau yam kev ruaj ntseg tiam sis lub thawv PEM tseem siv hnub no los tuav cov ntaub ntawv pov thawj cov ntaub ntawv, cov pej xeem thiab ntiag tug tuav, cov ntawv pov thawj, thiab lwm yam.

Ceebtoom: Qee cov ntaub ntawv nyob rau hauv PEM hom yuav zoo siv qhov sib txawv ntxiv, xws li CER lossis CRT rau cov ntawv pov thawj, los yog KEY rau cov pejxeem lossis cov private.

Yuav ua li cas qhib PEM ntaub ntawv

Cov kauj ruam rau qhib PEM cov ntaub ntawv sib txawv yog nyob ntawm daim ntawv thov uas nws xav tau thiab kev khiav hauj lwm uas koj siv. Txawm li cas los xij, tej zaum koj yuav xav hloov koj cov ntaub ntawv PEM rau CER los yog CRT kom tau qee qhov kev pab cuam txais cov ntaub ntawv no.

Qhov rai

Yog tias koj xav tau cov ntaub ntawv CER lossis CRT hauv Microsoft lub npe email xws li Outlook, qhib nws hauv Internet Explorer kom nws tau txais kev thauj mus rau hauv cov ntaub ntawv kom zoo. Tus email xa tuaj yeem siv nws los ntawm qhov ntawd.

Yog xav saib cov ntaub ntawv pov thawj twg tau muab xa mus rau hauv koj lub computer, thiab yuav import cov khoom siv ntawm tus kheej, siv Internet Explorer cov ntawv qhia zaub mov kom nkag tau hauv Internet Options> Content> Certificates .

Mus import CER lossis CRT cov ntaub ntawv mus rau hauv lub qhov rais, pib los ntawm kev qhib Microsoft Management Console ntawm Khiav mus rau hauv lub thawv (siv Windows Key + R keyboard shortcut los sau mmc ). From there, mus rau cov ntaub ntawv> Ntxiv / Tshem Snap-hauv ... thiab xaiv Certificates ntawm sab laug sab, thiab ces ntxiv> khawm nyob nruab nrab ntawm lub qhov rais. Xaiv tus account hauv Computer rau hauv qab no, thiab tom qab ntawd los ntawm tus kiv cua, xaiv lub zos lub computer thaum nug.

Ib zaug "Cov Ntawv Pov Tawm" yog muab tso rau hauv "Console Root," ntxiv cov nplaub tshev thiab cai-click Trusted Root Authorities , thiab xaiv Tasks> Import ....

macOS

Tib lub tswv yim no muaj tseeb rau koj tus neeg siv email Mac email li nws yog rau ib lub qhov rais; siv Safari kom muaj PEM cov ntaub ntawv xa mus rau Keychain Access.

Koj tuaj yeem tau import SSL daim ntawv pov thawj ntawm cov ntaub ntawv> Cov Ntawv Txais Ntsuas ... cov zaub mov hauv Keychain Access. Xaiv System los ntawm cov ntawv qhia zaub mov nco qab thiab tom qab ntawd ua raws li ntawm on-screen prompts.

Yog tias cov tswv yim no tsis ua hauj lwm rau import cov ntaub ntawv PEM rau hauv macOS, koj yuav tau ua raws li cov lus qhia nram qab no:

ruaj ntseg import yourfile.pem -k ~ / Library / Keychains / login.keychain

Linux

Siv lo lus txib keytool kom pom cov ntsiab lus ntawm PEM cov ntaub ntawv ntawm Linux:

keytool -printcert -file yourfile.pem

Ua raws li cov kauj ruam no yog tias koj xav tau import cov ntaub ntawv CRT mus rau hauv Linux lub npe pov thawj ntawm daim ntawv pov thawj (saib PEM rau CRT conversion method hauv seem tom ntej yog tias koj muaj PEM file xwb):

  1. Next rau / usr / share / ca-certifications / .
  2. Tsim ib qho ntawv muaj (piv txwv, sudo mkdir / usr / share / ca-certifications / work ).
  3. Luam lub .CRT cov ntaub ntawv mus rau hauv cov ntawv sau tshiab. Yog hais tias koj yuav tsis ua nws manually, koj siv tau qhov hais kom ua xwb: sudo cp yourfile.crt /usr/share/ca-certificates/work/yourfile.crt .
  4. Xyuas kom tseeb tias cov ntawv tso cai raug teeb tsa (755 rau daim nplaub tshev thiab 644 rau cov ntaub ntawv).
  5. Khiav cov sudo hloov tshiab-ca-daim ntawv pov thawj.

Firefox thiab Thunderbird

Yog hais tias PEM cov ntaub ntawv xav tau ntshuam mus rau Mozilla email cov neeg siv xws li Thunderbird, koj yuav tsum xub xa cov ntaub ntawv PEM tawm ntawm Firefox. Qhib cov Firefox cov ntawv qhia zaub mov thiab xaiv Xaiv . Mus Tshoj> Cov Ntawv Pov Hwm> Pom Daim Ntawv Pov Thawj> Koj Cov Ntawv Tso Cai thiab xaiv ib qho koj yuav tsum tau xa tawm, thiab mam li xaiv Backup ....

Tom qab ntawd, hauv Thunderbird, qhib cov ntawv qhia zaub mov thiab nyem lossis xaiv Cov Kws Khw . Next rau Advanced> Certificates> Tswj Certificates> Koj Cov Ntawv Pov Hwm> Import .... Los ntawm "File name:" hauv seem ntawm lub Xa Ntawv (Import window), xaiv cov Certificate Files los ntawm kev xaav, thiab mam li nrhiav thiab qhib cov ntaub ntawv PEM.

Hloov PEM cov ntaub ntawv rau hauv Firefox, cia li ua raws li cov kauj ruam koj xav export ib qho, tiam sis xaiv Ntshuam ... es tsis txhob Backup ... khawm.

Java KeyStore

Pom no Tshooj Tshooj ntawm kev xa cov ntaub ntawv PEM mus rau hauv Java KeyStore (JKS) yog tias koj xav ua qhov ntawd. Lwm qhov kev xaiv uas tej zaum yuav ua hauj lwm yog siv qhov cuab yeej keyutil.

Yuav Hloov Cov Ntaub Ntawv PEM Li Cas

Tsis zoo li ntau cov ntaub ntawv tawm tswv yim uas tuaj yeem hloov dua siab tshiab nrog cov ntaub ntawv hloov los yog lub vev xaib , koj yuav tsum sau cov lus tshwj xeeb tawm tsam rau ib qho kev pab cuam kom thiaj li hloov tau PEM cov hom ntaub ntawv.

Hloov PEM rau PPK nrog PuTTYGen. Xaiv Load ntawm sab xis ntawm qhov kev zov me nyuam, teev cov hom ntaub ntawv los ua tej ntaub ntawv (*. *), Thiab mam li xauj rau thiab qhib koj cov ntaub ntawv PEM. Xaiv Save private key kom cov ntaub ntawv PPK.

Nrog OpenSSL (tau lub qhov rais version ntawm no), koj tuaj yeem hloov PEM cov ntaub ntawv rau PFX nrog rau cov lus qhia nram qab no:

openssl pkcs12 -inkey yourfile.pem -nws yourfile.cert -xaws-tawm yourfile.pfx

Yog tias koj muaj PEM cov ntaub ntawv uas xav tau hloov dua siab tshiab rau CRT, zoo li yog qhov teeb meem nrog Ubuntu, siv qhov kev hais kom ua nrog OpenSSL:

openssl x509 -in yourfile.pem-npe PEM-tawm yourfile.crt

OpenSSL kuj txhawb kev hloov siab .PEM rau .PEM (PKCS # 12, los yog Key Key Cryptography Standard # 12), tab sis thov ntxiv cov ntaub ntawv ".TXT" thaum kawg ntawm cov ntaub ntawv ua ntej yuav khiav cov lus txib no:

openssl pkcs12 -kev them nyiaj yug -nws koj tus nab npawb.pem.txt hauv koj cov ntaub ntawv.pyl.txt-tawm yourfile.p12

Saib Tshooj Phwj Tshooj saum toj sau hais txog kev siv PEM cov ntaub ntawv nrog Java KeyStore yog tias koj xav hloov cov ntaub ntawv rau JKS, los yog qhov kev nyeem ntawm Oracle mus xa cov ntaub ntawv rau hauv Java truststore.

Xav paub ntxiv txog PEM

Cov ntaub ntawv pov thawj ntawm cov ntaub ntawv tshaj tawm ntawm Cov Ntawv Sau Npe Zoo Tshaj Plaws yog siv cov ntaub ntawv RSA-MD2 thiab RSA- MD5 los sib piv ua ntej thiab tom qab nws xa tuaj, los xyuas kom meej tias nws tsis tau raug teeb meem nrog txoj kev.

Thaum pib ntawm PEM cov ntaub ntawv yog lub hau me me uas nyeem ----- BEGIN [lo lus] ----- , thiab xaus rau cov ntaub ntawv yog ib qho zoo li footer li no: ----- END [label] - ----. Daim ntawv lo [[label] "qhia txog cov lus, yog li ntawd nws yuav nyeem tau TSEEM CEEB TSAB NTAWV, KEV PAB THEM NQI, los yog CERTIFICATE .

Ntawm no yog ib qho piv txwv:

----- pib PRIVATE TSEEM ----- MIICdgIBADANBgkqhkiG9w0BAQEFAASCAmAwggJcAgEAAoGBAMLgD0kAKDb5cFyP jbwNfR5CtewdXC + kMXAWD8DLxiTTvhMW7qVnlwOm36mZlszHKvsRf05lT4pegiFM 9z2j1OlaN + ci / X7NU22TNN6crYSiN77FjYJP464j876ndSxyD + rzys386T + 1r1aZ aggEdkj1TsSsv1zWIYKlPIjlvhuxAgMBAAECgYA0aH + T2Vf3WOPv8KdkcJg6gCRe yJKXOWgWRcicx / CUzOEsTxmFIDPLxqAWA3k7v0B + 3vjGw5Y9lycV / 5XqXNoQI14j y09iNsumds13u5AKkGdTJnZhQ7UKdoVHfuP44ZdOv / rJ5 / VD6F4zWywpe90pcbK + AWDVtusgGQBSieEl1QJBAOyVrUG5l2yoUBtd2zr / kiGm / DYyXlIthQO / A3 / LngDW 5 / ydGxVsT7lAVOgCsoT + 0L4efTh90PjzW8LPQrPBWVMCQQDS3h / FtYYd5lfz + FNL 9CEe1F1w9l8P749uNUD0g317zv1tatIqVCsQWHfVHNdVvfQ + vSFw38OORO00Xqs9 1GJrAkBkoXXEkxCZoy4PteheO / 8IWWLGGr6L7di6MzFl1lIqwT6D8L9oaV2vynFT DnKop0pa09Unhjyw57KMNmSE2SUJAkEArloTEzpgRmCq4IK2 / NpCeGdHS5uqRlbh 1VIa / xGps7EWQl5Mn8swQDel / YP3WGHTjfx7pgSegQfkyaRtGpZ9OQJAa9Vumj8m JAAtI0Bnga8hgQx7BhTQY4CadDxyiRGOGYhwUzYVCqkb2sbVRH9HnwUaJT7cWBY3 RnJdHOMXWem7 / w == ----- kAWG PRIVATE TSEEM -----

Ib daim PEM ntawv muaj peev xwm muaj ntau daim ntawv pov thawj, qhov twg yog qhov "END" thiab "BEGIN" sections ib ncig ntawm ib ncig.

Koj Cov Ntaub Ntawv Tseem Tsis Tau Qhib Dab Tsi?

Vim li cas koj cov ntaub ntawv tsis qhib rau hauv cov kev piav qhia saum toj no yog tias koj tsis tau ua nrog PEM cov ntaub ntawv. Koj yuav hloov tau cov ntaub ntawv uas tsuas yog siv cov ntaub ntawv txuas ntxiv. Thaum twg yog qhov teeb meem no, tsis muaj ib qho tseem ceeb rau ob daim ntawv txheeb xyuas los yog rau lawv ua hauj lwm nrog tib cov software programs.

Piv txwv, PEF zoo li phem heev li PEM tab sis txhais tau tias yog lub Pentax Raw Image cov ntaub ntawv hom ntawv los yog Portable Embosser Format. Ua raws li qhov txuas mus saib yuav ua li cas qhib lossis hloov PEF cov ntaub ntawv, yog tias qhov ntawd yog dab tsi koj yeej muaj.

Yog tias koj tabtom ntsuam xyuas cov ntaub ntawv KEY, nco ntsoov tias tsis yog txhua cov ntaub ntawv uas xaus nyob rau hauv .KEY muaj nyob hauv hom ntawv uas tau piav rau nplooj ntawv no. Tej zaum lawv yuav siv Software Daim Ntawv Pov Thawj Cov Ntaub Ntawv tseem ceeb siv thaum sau npe software programs xws li LightWave, los yog Keynote Kev nthuav qhia cov ntaub ntawv tsim los ntawm Apple Keynote.

Yog tias koj paub tseeb tias koj muaj PEM cov ntaub ntawv, tab sis muaj teeb meem qhib los yog siv nws, saib Kev Pab Ntxiv rau kev qhia txog kev hu xov tooj rau kuv ntawm kev tes hauj lwm sib txuas los yog hauv email, luam tawm hauv cov kev pabcuam tech support, thiab ntau dua. Qhia rau kuv paub tias yam teeb meem koj tau muaj thiab kuv yuav pom qhov kuv ua tau los pab.