Chapter 4. PKI, Certificates, and OpenSSL
In this chapter, we will cover:
Certificate generation
xCA: a GUI for managing a PKI (Part 1)
xCA: a GUI for managing a PKI (Part 2)
OpenSSL tricks: x509, pkcs12, verify output
Revoking certificates
The use of CRLs
Checking expired/revoked certificates
Intermediary CAs
Multiple CAs: stacking, using --capath