Manual/OpenSSL 23

[OpenSSL] RSA ๊ฐœ์ธํ‚ค (PrivateKey) ์ƒ์„ฑ ๋ช…๋ น์–ด

RSA ๊ฐœ์ธํ‚ค์— ๋Œ€ํ•œ ์ŠคํŽ™ ๋ฌธ์„œ๋Š” PKCS#1 ์ด๋‹ค. ์ด ๋ฌธ์„œ์— RSA ๊ด€๋ จ ํ‘œ์ค€์ด ์ž์„ธํžˆ ๋‚˜์™€ ์žˆ๋‹ค. ์—ฌ๊ธฐ์„œ๋Š” RSA ๊ฐœ์ธํ‚ค๋ฅผ ๋งŒ๋“ค๊ธฐ ์œ„ํ•œ OpenSSL ๋ช…๋ น์–ด๋ฅผ ์„ค๋ช… ํ•œ๋‹ค. RSA 2048 ๊ฐœ์ธํ‚ค ์ƒ์„ฑ openssl genrsa -out rsa_private.pem 2048 RSA ๊ฐœ์ธํ‚ค ์—์„œ ๊ณต๊ฐœํ‚ค ์ถ”์ด openssl rsa -in rsa_private.pem -pubout -out rsa_pub.pem ์ด ๋ช…๋ น์–ด๋ฅผ ์ƒ์„ฑ ํ•˜๋ฉด rsa_private.pem ํŒŒ์ผ์— RSA ๊ฐœ์ธํ‚ค ๊ฐ’์ด ์ €์žฅ์ด ๋œ๋‹ค. ์ด ํŒŒ์ผ์€ ์ˆœ์ˆ˜ํ•˜๊ฒŒ ๊ฐœ์ธํ‚ค์˜ ๊ฐ’๋“ค์ด๋ผ ์ด๋Œ€๋กœ ์‚ฌ์šฉํ•˜๊ฒŒ ๋˜๋ฉด ๋ณด์•ˆ์ƒ ๋ฌธ์ œ๊ฐ€ ๋œ๋‹ค. ์ฐธ๊ณ ๋กœ ๊ฒฐ๊ณผ ๊ฐ’์€ PEM ํ˜•์‹์˜ ๋ฐ์ดํƒ€์ด๋‹ค. -----BEGIN RSA PRIVATE KEY----- MIIEowIBAAKCA..

Manual/OpenSSL 2023.04.06

[OpenSSL] ECDSA ์šฉ Self-Sign ์ธ์ฆ์„œ ๋งŒ๋“ค๊ธฐ

ECDSA ์ธ์ฆ์„œ๋ฅผ ๋งŒ๋“ค๋ ค๋จผ ์šฐ์„  Named Curve๋ฅผ ์„ ํƒ ํ•ด์•ผ ํ•œ๋‹ค. ๋‹ค์Œ ๋ช…๋ น์–ด๋ฅผ ํ†ตํ•ด์„œ ๊ตฌํ•  ์ˆ˜ ์žˆ๋‹ค. openssl ecparam -list_curves ์—ฌ๊ธฐ์„œ๋Š” ์ผ๋ฐ˜์ ์œผ๋กœ ๋งŽ์ด ์‚ฌ์šฉํ•˜๋Š” prime256v1 ( secp256r1 ) ์„ ์„ค๋ช… ํ•œ๋‹ค. ์šฐ์„  ๊ฐœ์ธํ‚ค๋ฅผ ์ƒ์„ฑ ํ•˜์ž openssl ecparam -name prime256v1 -genkey -noout -out ecdsa_private_key.pem ์ƒ์„ฑ๋œ PEM ํŒŒ์ผ์€ ๋‹ค์Œ๊ณผ ๊ฐ™๋‹ค -----BEGIN EC PRIVATE KEY----- MHcCAQEEIGT2Um3gW//u0sWCDZQ/XuD6Qizge3mLOZWXPLJrso9XoAoGCCqGSM49 AwEHoUQDQgAEowFoZg9qlBEGZJ46iWBeLV38Xy2P2FQWOMdNQ..

Manual/OpenSSL 2023.04.05

[OpenSSL] TLS ์„œ๋ฒ„ ํ…Œ์ŠคํŠธ

openssl s_server ๋ฉ”๋‰ด์–ผ https://www.openssl.org/docs/man3.0/man1/openssl-s_server.html openssl s_client ๋ฉ”๋‰ด์–ผ https://www.openssl.org/docs/man3.0/man1/openssl-s_client.html ๋จผ์ € TLS ์„œ๋ฒ„๋ฅผ ๋›ฐ์šฐ๊ธฐ openssl s_server -accept 4433 -cert ssl_server.pem -keyform DER -key ssl_server_pri.der -www TLS ํด๋ผ์ด์–ธํŠธ ์—ฐ๊ฒฐ ํ•˜๊ธฐ openssl s_client -host 127.0.0.1 -port 4433 ์ƒ์„ธ ๋ฉ”์„ธ์ง€๋ฅผ ๋ณด๊ธฐ ์œ„ํ•ด์„œ -debug ์˜ต์…˜์„ ์ค„ ์ˆ˜ ์žˆ๋‹ค. -msg ์˜ต์…˜์„ ์ฃผ๋ฉด TLS Handshake ๋ฉ”์„ธ..

Manual/OpenSSL 2023.04.05