CentOS8 创建私有CA证书服务器,颁发证书,吊销证书

  • 1. 创建CA相关目录和文件
  • 2. 创建CA的私钥
  • 3. 给CA颁发自签名证书
  • 4. 用户生成私钥和证书申请
  • 5. CA颁发证书
  • 6. 查看证书
  • 7. 修改配置文件以便允许跨国CA授权和对同一证书申请文件多次授权
  • 8. 吊销证书

1. 创建CA相关目录和文件

[root@cent8 yum.repos.d]#mkdir -pv /etc/pki/CA/{certs,crl,newcerts,private}
mkdir: created directory '/etc/pki/CA'
mkdir: created directory '/etc/pki/CA/certs'
mkdir: created directory '/etc/pki/CA/crl'
mkdir: created directory '/etc/pki/CA/newcerts'
mkdir: created directory '/etc/pki/CA/private'
[root@cent8 yum.repos.d]#tree /etc/pki/CA/
/etc/pki/CA/
├── certs
├── crl
├── newcerts
└── private4 directories, 0 filesindex.txt和serial文件在颁发证书时需要使用,如果不存在,会出现以下错误提示[root@cent8 yum.repos.d]#touch /etc/pki/CA/index.txt
[root@cent8 yum.repos.d]#
[root@cent8 yum.repos.d]#echo 0F > /etc/pki/CA/serial

2. 创建CA的私钥

[root@cent8 yum.repos.d]#cd /etc/pki/CA/
[root@cent8 CA]#(umask 066; openssl genrsa -out private/cakey.pem 2048)
Generating RSA private key, 2048 bit long modulus (2 primes)
....................+++++
.+++++
e is 65537 (0x010001)
[root@cent8 CA]#tree
.
├── certs
├── crl
├── index.txt
├── newcerts
├── private
│   └── cakey.pem
└── serial4 directories, 3 files
[root@cent8 CA]#ll private/
total 4
-rw------- 1 root root 1679 Oct 29 09:23 cakey.pem
[root@cent8 CA]#cat private/cakey.pem
-----BEGIN RSA PRIVATE KEY-----
MIIEpAIBAAKCAQEA+ekx0EfAl4THKF9nn7R6Ix4EKVlrMs/igtYALsEgkVN0EL3R
SaNq+r6FGrgUncB7BuNJZRcQfuJ/7WZHkbUyeVto4Ik3WGpMLwWb3nALesuVbA4K
IekkiBFPpZsl423WRoom82hbkqsEJRLZfC/kblvbj5mEwbrQbgnefc7r60K+H71s
LU1fPFnpRDfy8vMVcUnlux9Vu4Xl2ArOL04rf7VEe0TsYjMcwsZ5wynmJe4+iRQ0
u9wopyOfFb5VKZU9jdVC2iYwuOrzJwNTDbgDen91hOkZr1fNvA/IDyNsSMfzvPSW
8gcfag2GoGQ3/vQOs/IrfXBN5NvHjpM/YJn/WQIDAQABAoIBAQCFyvCePyu+cplk
5d7GQ4r37gPwVyzq4Ry1SviCD2buJq2GoPjA4bpOT11XNqHi6r9yqpAKjNSJ+Zzf
bdh3C3jgO63kN9HnhdEPg4M1DOs4bHGsjb+i8/xY1Fu9n1gjcBQ9Y40C1yXfWas4
ZeUFdWZoJslfEaNfTDJ2FtaEqBjps5zb7deFgRzhAXB5cOn4BFj9gimR42UOoBC4
AR1Rt52zobHe7TVG/KezrhS2kAN60ARFOevl8dDMNmohkuolMS7dIqMyKqrUQaio
bgv9pw9ExRhpqMkrUVNJR8T2Ysjfx7CJsFFt0TtfSnyF5NcMOQ1EcVaaKnbIHY5U
0yLfrmh5AoGBAP6M5aLopR1FRpbP3rKipPnmJSDOSAyBpjpS5n7J6cFZ5Jxhu2NF
G9N6YNd0GR9fIb1ELZIelqZrCCcXp0j5v/UBAjXuhp5cUJvLHhXNJwEy9uikxzsZ
K0TPy80dJ3al8cizeWUjUcP/wgu/AMzw6ZgMgm1kPTCHcS7kXmNYKEIDAoGBAPtV
iKdnPMPTKRVoH9kIxPF9BikTGJTf4wf25K0edv7S45oDZGkF2GL6ZokwqeIHm9hO
PSWv5NdW3IrcasDjPaooj78Xcj1PA3Xi4zUzAIyEeEzLHCwaNIq2oS6hqvI3nqtx
YAeES5wOn9s/eORMRy//85SDR+rAzg6ZtLzXpshzAoGBAJuxaD+FVoCZv7w8tnTC
oG+tQeZX5Z+oqRihXhQMweoeZoL0EB5+xa9K+fKuMzOKB2PxUIJALVrquljW0d4D
zFI55LVCCJrR0ggIa4VgLsw/9N+E8csG8P0sr/XsMBgVFdbxV33x5XAhffmbQQ0Z
CXeTpy7rkbWeEi9hRQ40fKMrAoGAA8cIU8PIdQUCdBDpkaCBHUQMyKdB0lL/HYqH
a1au4SuYQiNU6gMtemdbDSrPEtecbwbWAm//V4E1tVyUuitwLNOJPY0DqYo7ehUb
5xvKIVKIYFcZKEyIh6ExEPtbD2LonpkIoXRKkqDhpDDzBzNiSoVlStEiTpPxROTo
g4IWPqMCgYAF/H4FngD9s5gsJplB39c2oYsdF42rjdQ7PJASzSKYyLMKvW8DEotr
NF3JPZOdkhqoKvAtAbVSriooRixqpplAwhMRJ0sUYaMA2vWS7UPRjee6id6/5X05
jekXgq5ex31evJAFzhMrPl4Db+uy82+xEqfojxNjAhx6ambhL4VNsw==
-----END RSA PRIVATE KEY-----

3. 给CA颁发自签名证书

[root@cent8 CA]#openssl req -new -x509 -key /etc/pki/CA/private/cakey.pem -days
req: Option -days needs a value
req: Use -help for summary.
[root@cent8 CA]#3650 -out     /etc/pki/CA/cacert.pem^C
[root@cent8 CA]#openssl req -new -x509 -key /etc/pki/CA/private/cakey.pem -days 3650 -out     /etc/pki/CA/cacert.pem
You are about to be asked to enter information that will be incorporated
into your certificate request.
What you are about to enter is what is called a Distinguished Name or a DN.
There are quite a few fields but you can leave some blank
For some fields there will be a default value,
If you enter '.', the field will be left blank.
-----
Country Name (2 letter code) [XX]:CN
State or Province Name (full name) []:liaoning
Locality Name (eg, city) [Default City]:shenyang
Organization Name (eg, company) [Default Company Ltd]:meng
Organizational Unit Name (eg, section) []:devops
Common Name (eg, your name or your server's hostname) []:ca.meng.com
Email Address []:admin@meng.com
[root@cent8 CA]#tree /etc/pki/CA
/etc/pki/CA
├── cacert.pem
├── certs
├── crl
├── index.txt
├── newcerts
├── private
│   └── cakey.pem
└── serial4 directories, 4 files
[root@cent8 CA]#cat /etc/pki/CA/cacert.pem
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
[root@cent8 CA]#openssl x509 -in /etc/pki/CA/cacert.pem -noout -text
Certificate:Data:Version: 3 (0x2)Serial Number:4f:c1:9f:ae:b4:56:65:a0:4d:40:dc:6f:3a:50:d3:a0:04:c8:73:a3Signature Algorithm: sha256WithRSAEncryptionIssuer: C = CN, ST = liaoning, L = shenyang, O = meng, OU = devops, CN = ca.m                                                                                  eng.com, emailAddress = admin@meng.comValidityNot Before: Oct 29 01:26:02 2021 GMTNot After : Oct 27 01:26:02 2031 GMTSubject: C = CN, ST = liaoning, L = shenyang, O = meng, OU = devops, CN = ca.                                                                                  meng.com, emailAddress = admin@meng.comSubject Public Key Info:Public Key Algorithm: rsaEncryptionRSA Public-Key: (2048 bit)Modulus:00:f9:e9:31:d0:47:c0:97:84:c7:28:5f:67:9f:b4:7a:23:1e:04:29:59:6b:32:cf:e2:82:d6:00:2e:c1:20:91:53:74:10:bd:d1:49:a3:6a:fa:be:85:1a:b8:14:9d:c0:7b:06:e3:49:65:17:10:7e:e2:7f:ed:66:47:91:b5:32:79:5b:68:e0:89:37:58:6a:4c:2f:05:9b:de:70:0b:7a:cb:95:6c:0e:0a:21:e9:24:88:11:4f:a5:9b:25:e3:6d:d6:46:8a:26:f3:68:5b:92:ab:04:25:12:d9:7c:2f:e4:6e:5b:db:8f:99:84:c1:ba:d0:6e:09:de:7d:ce:eb:eb:42:be:1f:bd:6c:2d:4d:5f:3c:59:e9:44:37:f2:f2:f3:15:71:49:e5:bb:1f:55:bb:85:e5:d8:0a:ce:2f:4e:2b:7f:b5:44:7b:44:ec:62:33:1c:c2:c6:79:c3:29:e6:25:ee:3e:89:14:34:bb:dc:28:a7:23:9f:15:be:55:29:95:3d:8d:d5:42:da:26:30:b8:ea:f3:27:03:53:0d:b8:03:7a:7f:75:84:e9:19:af:57:cd:bc:0f:c8:0f:23:6c:48:c7:f3:bc:f4:96:f2:07:1f:6a:0d:86:a0:64:37:fe:f4:0e:b3:f2:2b:7d:70:4d:e4:db:c7:8e:93:3f:60:99:ff:59Exponent: 65537 (0x10001)X509v3 extensions:X509v3 Subject Key Identifier:41:0D:4A:16:B3:FE:FA:4B:75:4F:34:C8:0F:2E:33:33:DD:06:E1:3DX509v3 Authority Key Identifier:keyid:41:0D:4A:16:B3:FE:FA:4B:75:4F:34:C8:0F:2E:33:33:DD:06:E1:3DX509v3 Basic Constraints: criticalCA:TRUESignature Algorithm: sha256WithRSAEncryption67:cc:1c:ef:99:45:59:32:50:aa:47:e4:73:e3:fa:98:f4:36:f6:6e:69:f8:d8:86:fe:41:27:11:b0:3b:ac:65:9a:da:5d:6e:f5:63:15:a8:b4:d3:ab:f8:59:1b:3e:54:09:02:b5:1c:e9:2b:19:46:38:4c:b9:ff:f7:1c:ca:00:24:12:08:8e:a3:d8:6f:0b:85:4f:10:bb:f9:59:ba:21:68:9c:de:45:e3:5c:ba:94:71:bd:39:ab:1a:20:8d:64:67:ac:97:2f:78:21:78:1b:d5:a5:62:18:0d:98:33:af:33:2f:97:eb:60:1b:e5:ab:fa:fc:a4:e9:16:b6:0e:2f:a7:a6:81:1d:cf:f2:ea:2b:1f:15:4f:67:60:4e:e7:88:37:5d:ac:a8:db:7e:64:8b:7e:8d:ee:05:0e:35:85:15:30:61:94:87:ce:fe:60:82:7b:50:7a:28:1a:9f:be:43:f2:9a:9d:af:33:be:da:0c:62:07:d8:3c:73:38:6f:c8:be:b4:9f:85:36:87:93:9e:1f:0c:70:28:67:48:91:9e:d8:2c:32:b2:6e:0e:9e:8d:ed:db:da:24:c6:b2:e8:cc:4f:95:4a:8b:7c:6e:08:02:95:24:05:9a:12:38:43:c7:d8:4f:88:1f:90:0e:d3:af:17:56:f4:08:83:f5:0b:4d
[root@cent8 CA]#ll
total 8
-rw-r--r-- 1 root root 1432 Oct 29 09:26 cacert.pem
drwxr-xr-x 2 root root    6 Oct 29 09:21 certs
drwxr-xr-x 2 root root    6 Oct 29 09:21 crl
-rw-r--r-- 1 root root    0 Oct 29 09:22 index.txt
drwxr-xr-x 2 root root    6 Oct 29 09:21 newcerts
drwxr-xr-x 2 root root   23 Oct 29 09:23 private
-rw-r--r-- 1 root root    3 Oct 29 09:22 serial
[root@cent8 CA]#pwd
/etc/pki/CA

#将文件cacert.pem传到windows上,修改文件名为cacert.pem.crt,双击可以看到下面显示
在这里插入图片描述
在这里插入图片描述

4. 用户生成私钥和证书申请

[root@cent8 CA]#mkdir /data/app1
[root@cent8 CA]#(umask 066; openssl genrsa -out   /data/app1/app1.key 2048)
Generating RSA private key, 2048 bit long modulus (2 primes)
.............+++++
........................................................................+++++
e is 65537 (0x010001)
[root@cent8 CA]#cat /data/app1/app1.key
-----BEGIN RSA PRIVATE KEY-----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-----END RSA PRIVATE KEY-----生成证书申请文件[root@cent8 CA]#openssl req -new -key /data/app1/app1.key -out /data/app1/app1.csr
You are about to be asked to enter information that will be incorporated
into your certificate request.
What you are about to enter is what is called a Distinguished Name or a DN.
There are quite a few fields but you can leave some blank
For some fields there will be a default value,
If you enter '.', the field will be left blank.
-----
Country Name (2 letter code) [XX]:CN
State or Province Name (full name) []:liaoning
Locality Name (eg, city) [Default City]:shenyang
Organization Name (eg, company) [Default Company Ltd]:meng
Organizational Unit Name (eg, section) []:it
Common Name (eg, your name or your server's hostname) []:app1.meng.com
Email Address []:root@meng.comPlease enter the following 'extra' attributes
to be sent with your certificate request
A challenge password []:
An optional company name []:
[root@cent8 CA]#ll /data/app1
total 8
-rw-r--r-- 1 root root 1045 Oct 29 10:41 app1.csr
-rw------- 1 root root 1675 Oct 29 10:40 app1.key默认有三项内容必须和CA一致:国家,省份,组织,如果不同,会出现错误提示

5. CA颁发证书

[root@cent8 CA]#openssl ca -in /data/app1/app1.csr -out /etc/pki/CA/certs/app1.crt -d                                                                                  ays 1000
Using configuration from /etc/pki/tls/openssl.cnf
Check that the request matches the signature
Signature ok
Certificate Details:Serial Number: 15 (0xf)ValidityNot Before: Oct 29 02:43:33 2021 GMTNot After : Jul 25 02:43:33 2024 GMTSubject:countryName               = CNstateOrProvinceName       = liaoningorganizationName          = mengorganizationalUnitName    = itcommonName                = app1.meng.comemailAddress              = root@meng.comX509v3 extensions:X509v3 Basic Constraints:CA:FALSENetscape Comment:OpenSSL Generated CertificateX509v3 Subject Key Identifier:54:6A:1B:74:DB:6E:4B:47:35:2F:C9:31:F9:3D:FF:2D:6B:D9:DF:B8X509v3 Authority Key Identifier:keyid:41:0D:4A:16:B3:FE:FA:4B:75:4F:34:C8:0F:2E:33:33:DD:06:E1:3DCertificate is to be certified until Jul 25 02:43:33 2024 GMT (1000 days)
Sign the certificate? [y/n]:y1 out of 1 certificate requests certified, commit? [y/n]y
Write out database with 1 new entries
Data Base Updated
[root@cent8 CA]#tree /etc/pki/CA
/etc/pki/CA
├── cacert.pem
├── certs
│   └── app1.crt
├── crl
├── index.txt
├── index.txt.attr
├── index.txt.old
├── newcerts
│   └── 0F.pem
├── private
│   └── cakey.pem
├── serial
└── serial.old4 directories, 9 files

6. 查看证书

[root@cent8 CA]#cat /etc/pki/CA/certs/app1.crt
Certificate:Data:Version: 3 (0x2)Serial Number: 15 (0xf)Signature Algorithm: sha256WithRSAEncryptionIssuer: C=CN, ST=liaoning, L=shenyang, O=meng, OU=devops, CN=ca.meng.com/emai                                                                                  lAddress=admin@meng.comValidityNot Before: Oct 29 02:43:33 2021 GMTNot After : Jul 25 02:43:33 2024 GMTSubject: C=CN, ST=liaoning, O=meng, OU=it, CN=app1.meng.com/emailAddress=root                                                                                  @meng.comSubject Public Key Info:Public Key Algorithm: rsaEncryptionRSA Public-Key: (2048 bit)Modulus:00:ba:0e:36:b1:72:61:66:af:91:48:10:13:75:c8:63:72:27:75:89:39:49:e6:d1:63:ac:d3:d5:08:15:4e:6f:cc:77:5e:0e:84:4d:42:3d:54:f0:53:57:36:4e:b5:2f:cf:23:f4:91:ce:31:41:9c:35:eb:f9:42:80:32:a1:11:0b:46:9a:0c:74:20:50:5e:24:e7:10:3c:f6:07:73:16:2d:70:6c:db:2d:45:7e:0a:16:8a:6b:a2:e0:de:ef:ea:fa:67:c5:34:3c:87:0c:24:21:9e:82:cb:0f:10:d0:2a:a6:84:99:82:66:90:bb:74:f4:94:b8:e9:88:e7:e6:56:b4:ec:94:8e:34:78:69:27:a4:c3:d8:a9:1b:e6:29:e5:51:b4:af:b7:13:b1:a1:cc:60:88:22:26:6d:44:e6:a6:e7:9c:5f:53:20:5a:89:66:1b:45:e5:71:60:c7:55:76:06:7b:c6:de:5a:12:b0:07:88:14:2a:96:82:29:e4:66:69:28:fc:2f:03:2b:2f:bf:0d:f2:12:1d:23:b7:cb:b8:36:d2:7c:b2:15:f6:8d:cf:77:52:56:55:c5:a2:33:2c:db:d0:82:c3:59:fb:3a:61:bf:8e:7a:d3:c0:fc:bb:99:9d:75:d5:c4:ff:da:f6:16:5c:f8:47:02:c6:8f:6e:cd:7fExponent: 65537 (0x10001)X509v3 extensions:X509v3 Basic Constraints:CA:FALSENetscape Comment:OpenSSL Generated CertificateX509v3 Subject Key Identifier:54:6A:1B:74:DB:6E:4B:47:35:2F:C9:31:F9:3D:FF:2D:6B:D9:DF:B8X509v3 Authority Key Identifier:keyid:41:0D:4A:16:B3:FE:FA:4B:75:4F:34:C8:0F:2E:33:33:DD:06:E1:3DSignature Algorithm: sha256WithRSAEncryptiond4:fc:3c:ee:28:03:83:be:1b:49:51:43:22:cd:e6:3f:75:d4:89:8d:84:36:53:5e:f4:46:f9:49:ef:97:f8:af:a3:d5:ea:1d:cf:44:e8:47:86:9d:b2:e5:80:90:d3:5d:aa:ae:75:fc:72:62:6b:ab:75:ba:0e:b3:0d:b3:17:b3:25:05:8e:d4:48:40:10:bb:73:79:e5:35:da:0b:e4:99:3f:04:bb:c3:2b:5d:bd:b7:48:d7:af:b6:59:62:e2:4f:58:68:16:39:1a:7e:de:3a:c8:10:a8:ad:67:8a:9b:b5:6b:2f:48:66:63:e7:99:bd:72:83:32:37:7a:89:0e:fd:fb:33:ca:19:ad:e3:69:0e:f3:b7:08:8a:ec:6c:e2:a6:fe:cc:15:8c:e0:a4:7f:13:a0:09:f7:fc:d6:56:4b:8f:b9:54:ff:7c:95:19:25:1b:25:4c:f1:1f:f5:a3:7c:51:19:4c:87:f3:51:15:3f:09:d0:65:cc:9d:59:ed:46:6c:e4:79:bf:e4:19:99:42:ee:90:0d:87:ec:2f:1f:f5:9a:45:65:3c:a1:85:49:a5:ca:6b:7e:6f:fe:b6:31:99:47:4c:ed:f5:23:92:14:d5:69:b4:7b:0a:ae:90:7e:d4:9f:7b:db:a0:5b:90:6e:c7:1d:13:55:d1:f3:8e:cb:ae:9d
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
[root@cent8 CA]#openssl x509 -in /etc/pki/CA/certs/app1.crt -noout -text
Certificate:Data:Version: 3 (0x2)Serial Number: 15 (0xf)Signature Algorithm: sha256WithRSAEncryptionIssuer: C = CN, ST = liaoning, L = shenyang, O = meng, OU = devops, CN = ca.m                                                                                  eng.com, emailAddress = admin@meng.comValidityNot Before: Oct 29 02:43:33 2021 GMTNot After : Jul 25 02:43:33 2024 GMTSubject: C = CN, ST = liaoning, O = meng, OU = it, CN = app1.meng.com, emailA                                                                                  ddress = root@meng.comSubject Public Key Info:Public Key Algorithm: rsaEncryptionRSA Public-Key: (2048 bit)Modulus:00:ba:0e:36:b1:72:61:66:af:91:48:10:13:75:c8:63:72:27:75:89:39:49:e6:d1:63:ac:d3:d5:08:15:4e:6f:cc:77:5e:0e:84:4d:42:3d:54:f0:53:57:36:4e:b5:2f:cf:23:f4:91:ce:31:41:9c:35:eb:f9:42:80:32:a1:11:0b:46:9a:0c:74:20:50:5e:24:e7:10:3c:f6:07:73:16:2d:70:6c:db:2d:45:7e:0a:16:8a:6b:a2:e0:de:ef:ea:fa:67:c5:34:3c:87:0c:24:21:9e:82:cb:0f:10:d0:2a:a6:84:99:82:66:90:bb:74:f4:94:b8:e9:88:e7:e6:56:b4:ec:94:8e:34:78:69:27:a4:c3:d8:a9:1b:e6:29:e5:51:b4:af:b7:13:b1:a1:cc:60:88:22:26:6d:44:e6:a6:e7:9c:5f:53:20:5a:89:66:1b:45:e5:71:60:c7:55:76:06:7b:c6:de:5a:12:b0:07:88:14:2a:96:82:29:e4:66:69:28:fc:2f:03:2b:2f:bf:0d:f2:12:1d:23:b7:cb:b8:36:d2:7c:b2:15:f6:8d:cf:77:52:56:55:c5:a2:33:2c:db:d0:82:c3:59:fb:3a:61:bf:8e:7a:d3:c0:fc:bb:99:9d:75:d5:c4:ff:da:f6:16:5c:f8:47:02:c6:8f:6e:cd:7fExponent: 65537 (0x10001)X509v3 extensions:X509v3 Basic Constraints:CA:FALSENetscape Comment:OpenSSL Generated CertificateX509v3 Subject Key Identifier:54:6A:1B:74:DB:6E:4B:47:35:2F:C9:31:F9:3D:FF:2D:6B:D9:DF:B8X509v3 Authority Key Identifier:keyid:41:0D:4A:16:B3:FE:FA:4B:75:4F:34:C8:0F:2E:33:33:DD:06:E1:3DSignature Algorithm: sha256WithRSAEncryptiond4:fc:3c:ee:28:03:83:be:1b:49:51:43:22:cd:e6:3f:75:d4:89:8d:84:36:53:5e:f4:46:f9:49:ef:97:f8:af:a3:d5:ea:1d:cf:44:e8:47:86:9d:b2:e5:80:90:d3:5d:aa:ae:75:fc:72:62:6b:ab:75:ba:0e:b3:0d:b3:17:b3:25:05:8e:d4:48:40:10:bb:73:79:e5:35:da:0b:e4:99:3f:04:bb:c3:2b:5d:bd:b7:48:d7:af:b6:59:62:e2:4f:58:68:16:39:1a:7e:de:3a:c8:10:a8:ad:67:8a:9b:b5:6b:2f:48:66:63:e7:99:bd:72:83:32:37:7a:89:0e:fd:fb:33:ca:19:ad:e3:69:0e:f3:b7:08:8a:ec:6c:e2:a6:fe:cc:15:8c:e0:a4:7f:13:a0:09:f7:fc:d6:56:4b:8f:b9:54:ff:7c:95:19:25:1b:25:4c:f1:1f:f5:a3:7c:51:19:4c:87:f3:51:15:3f:09:d0:65:cc:9d:59:ed:46:6c:e4:79:bf:e4:19:99:42:ee:90:0d:87:ec:2f:1f:f5:9a:45:65:3c:a1:85:49:a5:ca:6b:7e:6f:fe:b6:31:99:47:4c:ed:f5:23:92:14:d5:69:b4:7b:0a:ae:90:7e:d4:9f:7b:db:a0:5b:90:6e:c7:1d:13:55:d1:f3:8e:cb:ae:9d
[root@cent8 CA]#openssl x509 -in /etc/pki/CA/certs/app1.crt -noout -issuer
issuer=C = CN, ST = liaoning, L = shenyang, O = meng, OU = devops, CN = ca.meng.com,                                                                                   emailAddress = admin@meng.com
[root@cent8 CA]#openssl x509 -in /etc/pki/CA/certs/app1.crt -noout -subject
subject=C = CN, ST = liaoning, O = meng, OU = it, CN = app1.meng.com, emailAddress =                                                                                   root@meng.com
[root@cent8 CA]#openssl x509 -in /etc/pki/CA/certs/app1.crt -noout -dates
notBefore=Oct 29 02:43:33 2021 GMT
notAfter=Jul 25 02:43:33 2024 GMT
[root@cent8 CA]#openssl x509 -in /etc/pki/CA/certs/app1.crt -noout -serial
serial=0F验证指定编号对应证书的有效性[root@cent8 CA]#cat /etc/pki/CA/index.txt
V       240725024333Z           0F      unknown /C=CN/ST=liaoning/O=meng/OU=it/CN=app                                                                                  1.meng.com/emailAddress=root@meng.com
[root@cent8 CA]#openssl ca -status 0F
Using configuration from /etc/pki/tls/openssl.cnf
0F=Valid (V)
[root@cent8 CA]#cat /etc/pki/CA/index.txt.old
[root@cent8 CA]#cat /etc/pki/CA/serial
10
[root@cent8 CA]#cat /etc/pki/CA/serial.old
0F
[root@cent8 CA]#ll
total 20
-rw-r--r-- 1 root root 1432 Oct 29 09:26 cacert.pem
drwxr-xr-x 2 root root   22 Oct 29 10:43 certs
drwxr-xr-x 2 root root    6 Oct 29 09:21 crl
-rw-r--r-- 1 root root  103 Oct 29 10:43 index.txt
-rw-r--r-- 1 root root   21 Oct 29 10:43 index.txt.attr
-rw-r--r-- 1 root root    0 Oct 29 09:22 index.txt.old
drwxr-xr-x 2 root root   20 Oct 29 10:43 newcerts
drwxr-xr-x 2 root root   23 Oct 29 09:23 private
-rw-r--r-- 1 root root    3 Oct 29 10:43 serial
-rw-r--r-- 1 root root    3 Oct 29 09:22 serial.old
[root@cent8 CA]#cd certs/
[root@cent8 certs]#ll
total 8
-rw-r--r-- 1 root root 4602 Oct 29 10:43 app1.crt
[root@cent8 certs]#pwd
/etc/pki/CA/certs
[root@cent8 certs]#cp /etc/pki/CA/certs/app1.crt /data/app1/
[root@cent8 certs]#tree /data/app1/
/data/app1/
├── app1.crt
├── app1.csr
└── app1.key0 directories, 3 files

导入根证书,可以看到app1证书已经有根了
在这里插入图片描述
在这里插入图片描述
在这里插入图片描述
在这里插入图片描述

利用原有证书申请文件生成新证书报错,需要修改/etc/pki/tls/openssl.cnf以便可以同一证书申请文件存在多证书,并且可以实现跨国的证书授权。[root@cent8 certs]#openssl ca -in /data/app1/app1.csr -out /etc/pki/CA/certs/app1-new.crt -days 1000
Using configuration from /etc/pki/tls/openssl.cnf
Check that the request matches the signature
Signature ok
ERROR:There is already a certificate for /C=CN/ST=liaoning/O=meng/OU=it/CN=app1.meng.com/emailAddress=root@meng.com
The matching entry has the following details
Type          :Valid
Expires on    :240725024333Z
Serial Number :0F
File name     :unknown
Subject Name  :/C=CN/ST=liaoning/O=meng/OU=it/CN=app1.meng.com/emailAddress=root@meng.com
[root@cent8 certs]#cat /etc/pki/CA/index.txt
V       240725024333Z           0F      unknown /C=CN/ST=liaoning/O=meng/OU=it/CN=app1.meng.com/emailAddress=root@meng.com

7. 修改配置文件以便允许跨国CA授权和对同一证书申请文件多次授权

[root@cent8 certs]#cp /etc/pki/tls/openssl.cnf /etc/pki/tls/openssl.cnf.old[root@cent8 certs]#vim /etc/pki/tls/openssl.cnf#policy         = policy_match
policy          = policy_anything[root@cent8 certs]#openssl ca -in /data/app1/app1.csr -out /etc/pki/CA/certs/app1-new.crt -days 1000
Using configuration from /etc/pki/tls/openssl.cnf
Check that the request matches the signature
Signature ok
Certificate Details:Serial Number: 16 (0x10)ValidityNot Before: Oct 29 03:14:00 2021 GMTNot After : Jul 25 03:14:00 2024 GMTSubject:countryName               = CNstateOrProvinceName       = liaoninglocalityName              = shenyangorganizationName          = mengorganizationalUnitName    = itcommonName                = app1.meng.comemailAddress              = root@meng.comX509v3 extensions:X509v3 Basic Constraints:CA:FALSENetscape Comment:OpenSSL Generated CertificateX509v3 Subject Key Identifier:54:6A:1B:74:DB:6E:4B:47:35:2F:C9:31:F9:3D:FF:2D:6B:D9:DF:B8X509v3 Authority Key Identifier:keyid:41:0D:4A:16:B3:FE:FA:4B:75:4F:34:C8:0F:2E:33:33:DD:06:E1:3DCertificate is to be certified until Jul 25 03:14:00 2024 GMT (1000 days)
Sign the certificate? [y/n]:y1 out of 1 certificate requests certified, commit? [y/n]y
Write out database with 1 new entries
Data Base Updated
[root@cent8 certs]#cat /etc/pki/CA/index.txt
V       240725024333Z           0F      unknown /C=CN/ST=liaoning/O=meng/OU=it/CN=app1.meng.com/emailAddress=root@meng.com
V       240725031400Z           10      unknown /C=CN/ST=liaoning/L=shenyang/O=meng/OU=it/CN=app1.meng.com/emailAddress=root@meng.com
[root@cent8 certs]#mkdir /data/app2 -p
[root@cent8 certs]#(umask 066; openssl genrsa -out /data/app2/app2.key 2048)
Generating RSA private key, 2048 bit long modulus (2 primes)
...............................................................................................................+++++
...........................+++++
e is 65537 (0x010001)
[root@cent8 certs]#openssl req -new -key /data/app2/app2.key -out /data/app2/app2.csr
You are about to be asked to enter information that will be incorporated
into your certificate request.
What you are about to enter is what is called a Distinguished Name or a DN.
There are quite a few fields but you can leave some blank
For some fields there will be a default value,
If you enter '.', the field will be left blank.
-----
Country Name (2 letter code) [XX]:US
State or Province Name (full name) []:newyork
Locality Name (eg, city) [Default City]:newyork
Organization Name (eg, company) [Default Company Ltd]:meng
Organizational Unit Name (eg, section) []:sales
Common Name (eg, your name or your server's hostname) []:sales.meng.com
Email Address []:sales@meng.comPlease enter the following 'extra' attributes
to be sent with your certificate request
A challenge password []:
An optional company name []:
[root@cent8 certs]#ll
total 16
-rw-r--r-- 1 root root 4602 Oct 29 10:43 app1.crt
-rw-r--r-- 1 root root 4643 Oct 29 11:14 app1-new.crt
[root@cent8 certs]#openssl ca -in /data/app2/app2.csr -out /etc/pki/CA/certs/app2.crt -days 1000
Using configuration from /etc/pki/tls/openssl.cnf
Check that the request matches the signature
Signature ok
Certificate Details:Serial Number: 17 (0x11)ValidityNot Before: Oct 29 03:17:41 2021 GMTNot After : Jul 25 03:17:41 2024 GMTSubject:countryName               = USstateOrProvinceName       = newyorklocalityName              = newyorkorganizationName          = mengorganizationalUnitName    = salescommonName                = sales.meng.comemailAddress              = sales@meng.comX509v3 extensions:X509v3 Basic Constraints:CA:FALSENetscape Comment:OpenSSL Generated CertificateX509v3 Subject Key Identifier:BC:D2:DB:77:5E:C7:91:30:04:22:8A:24:72:80:73:02:C1:0D:89:FBX509v3 Authority Key Identifier:keyid:41:0D:4A:16:B3:FE:FA:4B:75:4F:34:C8:0F:2E:33:33:DD:06:E1:3DCertificate is to be certified until Jul 25 03:17:41 2024 GMT (1000 days)
Sign the certificate? [y/n]:y1 out of 1 certificate requests certified, commit? [y/n]y
Write out database with 1 new entries
Data Base Updated
[root@cent8 certs]#ll
total 24
-rw-r--r-- 1 root root 4602 Oct 29 10:43 app1.crt
-rw-r--r-- 1 root root 4643 Oct 29 11:14 app1-new.crt
-rw-r--r-- 1 root root 4650 Oct 29 11:17 app2.crt
[root@cent8 certs]#cp app2.crt /data/app2/
[root@cent8 certs]#pwd
/etc/pki/CA/certs[root@cent8 certs]#tree /etc/pki/CA/
/etc/pki/CA/
├── cacert.pem
├── certs
│   ├── app1.crt
│   ├── app1-new.crt
│   └── app2.crt
├── crl
├── index.txt
├── index.txt.attr
├── index.txt.attr.old
├── index.txt.old
├── newcerts
│   ├── 0F.pem
│   ├── 10.pem
│   └── 11.pem
├── private
│   └── cakey.pem
├── serial
└── serial.old4 directories, 14 files

8. 吊销证书

[root@cent8 certs]#cat /etc/pki/CA/index.txt
V       240725024333Z           0F      unknown /C=CN/ST=liaoning/O=meng/OU=it/CN=app1.meng.com/emailAddress=root@meng.com
V       240725031400Z           10      unknown /C=CN/ST=liaoning/L=shenyang/O=meng/OU=it/CN=app1.meng.com/emailAddress=root@meng.com
V       240725031741Z           11      unknown /C=US/ST=newyork/L=newyork/O=meng/OU=sales/CN=sales.meng.com/emailAddress=sales@meng.com
[root@cent8 certs]#openssl ca -revoke /etc/pki/CA/newcerts/10.pem
Using configuration from /etc/pki/tls/openssl.cnf
Revoking Certificate 10.
Data Base Updated
[root@cent8 certs]#cat /etc/pki/CA/index.txt
V       240725024333Z           0F      unknown /C=CN/ST=liaoning/O=meng/OU=it/CN=app1.meng.com/emailAddress=root@meng.com
R       240725031400Z   211029032107Z   10      unknown /C=CN/ST=liaoning/L=shenyang/O=meng/OU=it/CN=app1.meng.com/emailAddress=root@meng.com
V       240725031741Z           11      unknown /C=US/ST=newyork/L=newyork/O=meng/OU=sales/CN=sales.meng.com/emailAddress=sales@meng.com
[root@cent8 certs]#echo 01 > /etc/pki/CA/crlnumber
[root@cent8 certs]#openssl ca -gencrl -out /etc/pki/CA/crl.pem
Using configuration from /etc/pki/tls/openssl.cnf
[root@cent8 certs]#tree /etc/pki/CA/
/etc/pki/CA/
├── cacert.pem
├── certs
│   ├── app1.crt
│   ├── app1-new.crt
│   └── app2.crt
├── crl
├── crlnumber
├── crlnumber.old
├── crl.pem
├── index.txt
├── index.txt.attr
├── index.txt.attr.old
├── index.txt.old
├── newcerts
│   ├── 0F.pem
│   ├── 10.pem
│   └── 11.pem
├── private
│   └── cakey.pem
├── serial
└── serial.old4 directories, 17 files
[root@cent8 certs]#ll
total 24
-rw-r--r-- 1 root root 4602 Oct 29 10:43 app1.crt
-rw-r--r-- 1 root root 4643 Oct 29 11:14 app1-new.crt
-rw-r--r-- 1 root root 4650 Oct 29 11:17 app2.crt
[root@cent8 certs]#cd ..
[root@cent8 CA]#ll
total 40
-rw-r--r-- 1 root root 1432 Oct 29 09:26 cacert.pem
drwxr-xr-x 2 root root   58 Oct 29 11:17 certs
drwxr-xr-x 2 root root    6 Oct 29 09:21 crl
-rw-r--r-- 1 root root    3 Oct 29 11:21 crlnumber
-rw-r--r-- 1 root root    3 Oct 29 11:21 crlnumber.old
-rw-r--r-- 1 root root  739 Oct 29 11:21 crl.pem
-rw-r--r-- 1 root root  347 Oct 29 11:21 index.txt
-rw-r--r-- 1 root root   21 Oct 29 11:21 index.txt.attr
-rw-r--r-- 1 root root   21 Oct 29 11:17 index.txt.attr.old
-rw-r--r-- 1 root root  334 Oct 29 11:17 index.txt.old
drwxr-xr-x 2 root root   48 Oct 29 11:17 newcerts
drwxr-xr-x 2 root root   23 Oct 29 09:23 private
-rw-r--r-- 1 root root    3 Oct 29 11:17 serial
-rw-r--r-- 1 root root    3 Oct 29 11:14 serial.old
[root@cent8 CA]#pwd
/etc/pki/CA
[root@cent8 CA]#cd crl/
[root@cent8 crl]#ll
total 0
[root@cent8 crl]#cd ..
[root@cent8 CA]#cat /etc/pki/CA/crlnumber
02
[root@cent8 CA]#cat /etc/pki/CA/crl.pem
-----BEGIN X509 CRL-----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-----END X509 CRL-----
[root@cent8 CA]#openssl crl -in /etc/pki/CA/crl.pem -noout -text
Certificate Revocation List (CRL):Version 2 (0x1)Signature Algorithm: sha256WithRSAEncryptionIssuer: C = CN, ST = liaoning, L = shenyang, O = meng, OU = devops, CN = ca.meng.com, emailAddress = admin@meng.comLast Update: Oct 29 03:21:42 2021 GMTNext Update: Nov 28 03:21:42 2021 GMTCRL extensions:X509v3 CRL Number:1
Revoked Certificates:Serial Number: 10Revocation Date: Oct 29 03:21:07 2021 GMTSignature Algorithm: sha256WithRSAEncryptionbc:88:73:f3:aa:91:12:e8:d4:9e:4b:91:da:21:0c:80:46:e0:51:b3:2d:35:af:11:93:86:f7:da:45:10:74:c8:6b:83:b4:3a:12:13:c1:a6:3d:c6:a6:bc:8e:ac:6a:f8:eb:20:3d:23:78:d1:70:c0:b4:45:77:fd:f2:d0:0c:53:b3:44:5a:39:0d:68:48:36:40:4b:05:e7:26:59:e9:1a:64:4a:b8:91:59:97:aa:0f:fd:e3:83:e9:3c:f8:13:a2:2c:55:18:77:04:8b:6b:6a:ce:9b:77:56:79:0b:50:18:8d:e0:f5:b0:56:dc:9e:fc:5a:91:f3:cc:ae:e1:88:a1:34:f4:15:3b:50:1a:a0:2e:38:13:14:8e:5b:fa:ed:98:80:08:d8:aa:02:ea:8b:60:02:1b:8d:b6:d8:67:5e:53:12:99:26:57:56:2f:1c:b1:61:0e:62:a5:2a:75:26:10:3b:90:0d:26:e0:18:02:71:06:b4:1b:43:09:40:f7:8e:ec:b1:ca:ff:2e:c9:0f:f5:a9:a3:40:3a:1a:04:7c:38:d3:2e:ea:1d:16:30:fa:39:3e:c4:20:4d:fa:c4:51:14:2c:14:a0:9f:42:f6:d2:a7:a2:ed:40:f9:7d:ef:4b:14:34:8b:4d:35:6c:c1:00:5d:4b:fe:a3:f8:40:05:ca:7f
查看全文
如若内容造成侵权/违法违规/事实不符,请联系编程学习网邮箱:809451989@qq.com进行投诉反馈,一经查实,立即删除!

相关文章

  1. 高品质汽车行业数字化解决方案丨重塑企业与客户的相处之道

    在本文开始之前,云朵匠先把汽车行业的发展局势进行初步的梳理,尽管行业前景毋庸置疑,不同创业者的玩法也是五花八门,但这并不能掩盖很多模式都存在着问题,多数企业仍在试错。 在流量思维鼓动下,每个企业都…...

    2024/4/28 4:04:19
  2. Redis五种数据结构详解(理论+实战)(转发)

    Redis五种数据结构详解(理论实战) 程序员面试 6月22日 以下文章来源于非科班的科班 ,作者黎杜 非科班的科班 世界上并没有什么救世主,假如有那便是你自己;世界上也没有什么奇迹,假如有那只是努力的另一…...

    2024/4/28 0:12:31
  3. 算法思想-三分

    我认为三分就是就是关于二分的延伸思想,二分用于求解线性的相关问题,三分用于求解单谷凹凸函数的最值问题。 首先简述一下三分 三分思想用于解决一类求解函数的极值的方法(单谷凹凸函数) 有多种创建三分的方法,第一种相…...

    2024/4/28 5:16:55
  4. VS单步调试的无法进入断点、行号错乱等问题解决方法

    Visual Studio有时候会出现单步调试时候,断点处变成不可命中,始终提示“当前不会命中断点。源代码与原始版本不同。” 或者就算能进入断点,单步调试时实际执行的代码与源码行号不匹配的问题。 通常原因是因为代码中有非ASCII字符等原因。 尤…...

    2024/4/28 23:07:49
  5. CDN缓存控制(下篇)

    Etag: “5d8c72a5edda83343d6aere” 下一次请求时将Etag一并带过去给服务器,服务器只需要比较客户端传来的ETag跟自己服务器上该资源的ETag是否一致,就能很好地判断资源相对客户端而言是否被修改过了。 如果服务器发现ETag匹配不上,那么直接以…...

    2024/4/28 18:07:38
  6. 洛谷p1162(DFS)

    #include<bits/stdc.h> using namespace std; int n,mp[31][31],flag; int dir[4][4] {{0,1},{0,-1},{1,0},{-1,0}}; bool vis[31][31];//判断是否在墙内 bool in(int x,int y){//上for(int i x;i>0;i--){if(mp[i][y] 1) {flag1;break;}} //下for(int i x;i<…...

    2024/4/28 19:58:48
  7. Nutch爬虫配置及简单使用

    1 引言 1.1 爬虫的基本分类 爬虫基本可以分3类:分布式爬虫:Nutch JAVA单机爬虫:Crawler4j、WebMagic、WebCollector 非JAVA单机爬虫:Scrapy1.2 Nutch简介 Nutch是apache旗下的一个用Java实现的开源索引引擎项目,通过nutch,诞生了hadoop、tika、gora。Nutch的设计初衷主要…...

    2024/4/27 21:46:56
  8. 10个人9个答错,另外1个只对一半:数据库的锁,到底锁的是什么?

    在MySQL数据库中&#xff0c;为了解决并发问题&#xff0c;引入了很多的锁机制&#xff0c;很多时候&#xff0c;数据库的锁是在有数据库操作的过程中自动添加的。 所以&#xff0c;这就导致很多程序员经常会忽略数据库的锁机制的真正的原理。比如&#xff0c;我经常在面试中会…...

    2024/4/28 13:02:40
  9. vue+elementui实现排序按钮icon

    vueelementui实现排序按钮icon 效果图&#xff1a; 前端页面代码&#xff1a; -----vue代码 <el-row type"flex" justify"start" align"middle"><i class"icon el-icon-s-fold"></i><span>访问量</span&…...

    2024/4/29 2:06:48
  10. LeetCode26 删除有序数组中的重复项

    LeetCode26 删除有序数组中的重复项题目解题&#xff1a;快慢指针题目 这道题和 27 题不同的地方在于&#xff1a;不能改变元素的顺序&#xff0c;因为 nums 按照升序排列&#xff0c;判断元素是否重复可以用当前元素和前一个元素做比较。如果改变元素顺序&#xff0c;升序排列…...

    2024/4/24 15:22:54
  11. qt 毛玻璃效果

    //弹出框之前设置界面模糊 QGraphicsBlurEffect* ef new QGraphicsBlurEffect; ef->setBlurRadius(8); ef->setBlurHints(QGraphicsBlurEffect::AnimationHint); this->setGraphicsEffect(ef); //弹出框 QMessageBox::warning(this, "Warning", "This…...

    2024/4/28 14:28:33
  12. 曲率以及曲率半径推导

    ...

    2024/4/27 9:14:22
  13. 路径交叉,有点难度

    335. 路径交叉 难度困难104 给你一个整数数组 distance 。 从 X-Y 平面上的点 (0,0) 开始&#xff0c;先向北移动 distance[0] 米&#xff0c;然后向西移动 distance[1] 米&#xff0c;向南移动 distance[2] 米&#xff0c;向东移动 distance[3] 米&#xff0c;持续移动。也…...

    2024/4/24 15:42:51
  14. JAVASE阶段测试试卷

    以下答案为博主写的 不是百分百对 简答题和编程题 答案不唯一 如果有不一样的答案请评论 谢谢 文章目录JAVASE阶段测试试卷一、不定项选择题&#xff1a;二、填空题&#xff1a;三、程序阅读题四、简答题五. 编程题(共 40 分)JAVASE阶段测试试卷 注意事项&#xff1a;笔试时间…...

    2024/4/24 15:42:50
  15. Alibaba针对“金九银十”推出的

    第 6 节 计算机操作系统 Linux 第 7 节 剑指 Offer 题解 Leetcode 题解 算法 Java 集合专题 Java 多线程与高并发 专题 线程并发面试专题 JVM从入门到调优实战 JVM 面试专题 MySQL实战专题 MySQL面试专题 Redis 应用实战专题 Redis 面试专题 Mybatis 源码专题 Mybatis 面试…...

    2024/4/24 15:42:52
  16. 对象转换工具类

    对象转换工具类 package com.jingchuang.mesopenapi.common;import org.springframework.beans.BeanUtils;import java.util.List; import java.util.Objects; import java.util.stream.Collectors;public class BeanUtil {public static <R, T> List<R> newAndCo…...

    2024/4/24 15:42:49
  17. Docker 安装Redis

    Docker 安装Redis 一、docker pull redis:5.0 二、docker run -p 6379:6379 --name redis -v /mydata/redis/data:/data -d redis:5.0 redis-server --appendonly yes 三、ps -ef |grep redis 看到polkitd表示Docker安装Redis成功...

    2024/4/24 15:42:54
  18. 新导电子围栏在化工厂中的应用

    首先在大家的认知中&#xff0c;电子围栏就具有一定的威慑功能&#xff1a;高压电网和警示标志能够很直观的达到威慑作用。另外电子围栏能防范没有死角&#xff1a;安装不受周界长短、大小、地形的影响。电子围栏可以远程操作&#xff1a;可以通过键盘、软件以及局域网来控制主…...

    2024/4/24 15:42:48
  19. GuessedAtParserWarning: No parser was explicitly specified,

    「作者主页」&#xff1a;士别三日wyx GuessedAtParserWarning一、问题描述二、错误分析二、解决方案一、问题描述 使用 BeautifulSoup 函数解析 HTML 时出现了异常&#xff0c;但代码被正常执行「源代码」如下 「错误信息」如下 二、错误分析 GuessedAtParserWarning 用…...

    2024/4/24 15:42:45
  20. 网络基础ip地址汇总

    前言 汇总步骤 总结 前言 地址汇总是将多个网段汇总为一个网段&#xff0c;和子网划分相反。 汇总步骤 确定需要汇总的网段的子网地址。 将各网段的子网地址以二进制形式写出 比较各网段二进制表示的网络地址&#xff0c;相同的不变&#xff0c;从第一个不相同的到最后一个填…...

    2024/4/24 15:42:44

最新文章

  1. SystemUI GlobalActions plugin解析

    com.android.systemui.action.PLUGIN_GLOBAL_ACTIONS 系统的默认实现为GlobalActionsImpl: 是谁发送了showShutdownUi指令&#xff1f; GlobalActionsImpl 是通过inject的方式创建的 GlobalActionsComponent是一个system UI services&#xff0c;配置在config.xml中&#xff…...

    2024/4/29 2:09:36
  2. 梯度消失和梯度爆炸的一些处理方法

    在这里是记录一下梯度消失或梯度爆炸的一些处理技巧。全当学习总结了如有错误还请留言&#xff0c;在此感激不尽。 权重和梯度的更新公式如下&#xff1a; w w − η ⋅ ∇ w w w - \eta \cdot \nabla w ww−η⋅∇w 个人通俗的理解梯度消失就是网络模型在反向求导的时候出…...

    2024/3/20 10:50:27
  3. JSON格式转换

    文章目录 1. JSON 格式2. 细节 1. JSON 格式 实体类格式&#xff1a; public class Student {public string name {get; set;}public int age {get; set;} } public class Classs {public string teacher {get; set;}public List<Student> students {get; set;} }JSON格…...

    2024/4/18 22:12:03
  4. 微信小程序的页面交互2

    一、自定义属性 &#xff08;1&#xff09;定义&#xff1a; 微信小程序中的自定义属性实际上是由data-前缀加上一个自定义属性名组成。 &#xff08;2&#xff09;如何获取自定义属性的值&#xff1f; 用到target或currentTarget对象的dataset属性可以获取数据 &#xff…...

    2024/4/25 11:41:25
  5. ASTM C1186-22 纤维水泥平板

    以无石棉类无机矿物纤维、有机合成纤维或纤维素纤维&#xff0c;单独或混合作为增强材料&#xff0c;以普通硅酸盐水泥或水泥中添加硅质、钙质材料代替部分水泥为胶凝材料&#xff0c;经制浆、成型、蒸汽或高压蒸汽养护制成的板材&#xff0c;俗称水泥压力板。 ASTM C1186-22纤…...

    2024/4/24 20:02:42
  6. 【外汇早评】美通胀数据走低,美元调整

    原标题:【外汇早评】美通胀数据走低,美元调整昨日美国方面公布了新一期的核心PCE物价指数数据,同比增长1.6%,低于前值和预期值的1.7%,距离美联储的通胀目标2%继续走低,通胀压力较低,且此前美国一季度GDP初值中的消费部分下滑明显,因此市场对美联储后续更可能降息的政策…...

    2024/4/28 13:52:11
  7. 【原油贵金属周评】原油多头拥挤,价格调整

    原标题:【原油贵金属周评】原油多头拥挤,价格调整本周国际劳动节,我们喜迎四天假期,但是整个金融市场确实流动性充沛,大事频发,各个商品波动剧烈。美国方面,在本周四凌晨公布5月份的利率决议和新闻发布会,维持联邦基金利率在2.25%-2.50%不变,符合市场预期。同时美联储…...

    2024/4/28 3:28:32
  8. 【外汇周评】靓丽非农不及疲软通胀影响

    原标题:【外汇周评】靓丽非农不及疲软通胀影响在刚结束的周五,美国方面公布了新一期的非农就业数据,大幅好于前值和预期,新增就业重新回到20万以上。具体数据: 美国4月非农就业人口变动 26.3万人,预期 19万人,前值 19.6万人。 美国4月失业率 3.6%,预期 3.8%,前值 3…...

    2024/4/26 23:05:52
  9. 【原油贵金属早评】库存继续增加,油价收跌

    原标题:【原油贵金属早评】库存继续增加,油价收跌周三清晨公布美国当周API原油库存数据,上周原油库存增加281万桶至4.692亿桶,增幅超过预期的74.4万桶。且有消息人士称,沙特阿美据悉将于6月向亚洲炼油厂额外出售更多原油,印度炼油商预计将每日获得至多20万桶的额外原油供…...

    2024/4/28 13:51:37
  10. 【外汇早评】日本央行会议纪要不改日元强势

    原标题:【外汇早评】日本央行会议纪要不改日元强势近两日日元大幅走强与近期市场风险情绪上升,避险资金回流日元有关,也与前一段时间的美日贸易谈判给日本缓冲期,日本方面对汇率问题也避免继续贬值有关。虽然今日早间日本央行公布的利率会议纪要仍然是支持宽松政策,但这符…...

    2024/4/27 17:58:04
  11. 【原油贵金属早评】欧佩克稳定市场,填补伊朗问题的影响

    原标题:【原油贵金属早评】欧佩克稳定市场,填补伊朗问题的影响近日伊朗局势升温,导致市场担忧影响原油供给,油价试图反弹。此时OPEC表态稳定市场。据消息人士透露,沙特6月石油出口料将低于700万桶/日,沙特已经收到石油消费国提出的6月份扩大出口的“适度要求”,沙特将满…...

    2024/4/27 14:22:49
  12. 【外汇早评】美欲与伊朗重谈协议

    原标题:【外汇早评】美欲与伊朗重谈协议美国对伊朗的制裁遭到伊朗的抗议,昨日伊朗方面提出将部分退出伊核协议。而此行为又遭到欧洲方面对伊朗的谴责和警告,伊朗外长昨日回应称,欧洲国家履行它们的义务,伊核协议就能保证存续。据传闻伊朗的导弹已经对准了以色列和美国的航…...

    2024/4/28 1:28:33
  13. 【原油贵金属早评】波动率飙升,市场情绪动荡

    原标题:【原油贵金属早评】波动率飙升,市场情绪动荡因中美贸易谈判不安情绪影响,金融市场各资产品种出现明显的波动。随着美国与中方开启第十一轮谈判之际,美国按照既定计划向中国2000亿商品征收25%的关税,市场情绪有所平复,已经开始接受这一事实。虽然波动率-恐慌指数VI…...

    2024/4/28 15:57:13
  14. 【原油贵金属周评】伊朗局势升温,黄金多头跃跃欲试

    原标题:【原油贵金属周评】伊朗局势升温,黄金多头跃跃欲试美国和伊朗的局势继续升温,市场风险情绪上升,避险黄金有向上突破阻力的迹象。原油方面稍显平稳,近期美国和OPEC加大供给及市场需求回落的影响,伊朗局势并未推升油价走强。近期中美贸易谈判摩擦再度升级,美国对中…...

    2024/4/27 17:59:30
  15. 【原油贵金属早评】市场情绪继续恶化,黄金上破

    原标题:【原油贵金属早评】市场情绪继续恶化,黄金上破周初中国针对于美国加征关税的进行的反制措施引发市场情绪的大幅波动,人民币汇率出现大幅的贬值动能,金融市场受到非常明显的冲击。尤其是波动率起来之后,对于股市的表现尤其不安。隔夜美国股市出现明显的下行走势,这…...

    2024/4/25 18:39:16
  16. 【外汇早评】美伊僵持,风险情绪继续升温

    原标题:【外汇早评】美伊僵持,风险情绪继续升温昨日沙特两艘油轮再次发生爆炸事件,导致波斯湾局势进一步恶化,市场担忧美伊可能会出现摩擦生火,避险品种获得支撑,黄金和日元大幅走强。美指受中美贸易问题影响而在低位震荡。继5月12日,四艘商船在阿联酋领海附近的阿曼湾、…...

    2024/4/28 1:34:08
  17. 【原油贵金属早评】贸易冲突导致需求低迷,油价弱势

    原标题:【原油贵金属早评】贸易冲突导致需求低迷,油价弱势近日虽然伊朗局势升温,中东地区几起油船被袭击事件影响,但油价并未走高,而是出于调整结构中。由于市场预期局势失控的可能性较低,而中美贸易问题导致的全球经济衰退风险更大,需求会持续低迷,因此油价调整压力较…...

    2024/4/26 19:03:37
  18. 氧生福地 玩美北湖(上)——为时光守候两千年

    原标题:氧生福地 玩美北湖(上)——为时光守候两千年一次说走就走的旅行,只有一张高铁票的距离~ 所以,湖南郴州,我来了~ 从广州南站出发,一个半小时就到达郴州西站了。在动车上,同时改票的南风兄和我居然被分到了一个车厢,所以一路非常愉快地聊了过来。 挺好,最起…...

    2024/4/28 1:22:35
  19. 氧生福地 玩美北湖(中)——永春梯田里的美与鲜

    原标题:氧生福地 玩美北湖(中)——永春梯田里的美与鲜一觉醒来,因为大家太爱“美”照,在柳毅山庄去寻找龙女而错过了早餐时间。近十点,向导坏坏还是带着饥肠辘辘的我们去吃郴州最富有盛名的“鱼头粉”。说这是“十二分推荐”,到郴州必吃的美食之一。 哇塞!那个味美香甜…...

    2024/4/25 18:39:14
  20. 氧生福地 玩美北湖(下)——奔跑吧骚年!

    原标题:氧生福地 玩美北湖(下)——奔跑吧骚年!让我们红尘做伴 活得潇潇洒洒 策马奔腾共享人世繁华 对酒当歌唱出心中喜悦 轰轰烈烈把握青春年华 让我们红尘做伴 活得潇潇洒洒 策马奔腾共享人世繁华 对酒当歌唱出心中喜悦 轰轰烈烈把握青春年华 啊……啊……啊 两…...

    2024/4/26 23:04:58
  21. 扒开伪装医用面膜,翻六倍价格宰客,小姐姐注意了!

    原标题:扒开伪装医用面膜,翻六倍价格宰客,小姐姐注意了!扒开伪装医用面膜,翻六倍价格宰客!当行业里的某一品项火爆了,就会有很多商家蹭热度,装逼忽悠,最近火爆朋友圈的医用面膜,被沾上了污点,到底怎么回事呢? “比普通面膜安全、效果好!痘痘、痘印、敏感肌都能用…...

    2024/4/27 23:24:42
  22. 「发现」铁皮石斛仙草之神奇功效用于医用面膜

    原标题:「发现」铁皮石斛仙草之神奇功效用于医用面膜丽彦妆铁皮石斛医用面膜|石斛多糖无菌修护补水贴19大优势: 1、铁皮石斛:自唐宋以来,一直被列为皇室贡品,铁皮石斛生于海拔1600米的悬崖峭壁之上,繁殖力差,产量极低,所以古代仅供皇室、贵族享用 2、铁皮石斛自古民间…...

    2024/4/28 5:48:52
  23. 丽彦妆\医用面膜\冷敷贴轻奢医学护肤引导者

    原标题:丽彦妆\医用面膜\冷敷贴轻奢医学护肤引导者【公司简介】 广州华彬企业隶属香港华彬集团有限公司,专注美业21年,其旗下品牌: 「圣茵美」私密荷尔蒙抗衰,产后修复 「圣仪轩」私密荷尔蒙抗衰,产后修复 「花茵莳」私密荷尔蒙抗衰,产后修复 「丽彦妆」专注医学护…...

    2024/4/26 19:46:12
  24. 广州械字号面膜生产厂家OEM/ODM4项须知!

    原标题:广州械字号面膜生产厂家OEM/ODM4项须知!广州械字号面膜生产厂家OEM/ODM流程及注意事项解读: 械字号医用面膜,其实在我国并没有严格的定义,通常我们说的医美面膜指的应该是一种「医用敷料」,也就是说,医用面膜其实算作「医疗器械」的一种,又称「医用冷敷贴」。 …...

    2024/4/27 11:43:08
  25. 械字号医用眼膜缓解用眼过度到底有无作用?

    原标题:械字号医用眼膜缓解用眼过度到底有无作用?医用眼膜/械字号眼膜/医用冷敷眼贴 凝胶层为亲水高分子材料,含70%以上的水分。体表皮肤温度传导到本产品的凝胶层,热量被凝胶内水分子吸收,通过水分的蒸发带走大量的热量,可迅速地降低体表皮肤局部温度,减轻局部皮肤的灼…...

    2024/4/27 8:32:30
  26. 配置失败还原请勿关闭计算机,电脑开机屏幕上面显示,配置失败还原更改 请勿关闭计算机 开不了机 这个问题怎么办...

    解析如下&#xff1a;1、长按电脑电源键直至关机&#xff0c;然后再按一次电源健重启电脑&#xff0c;按F8健进入安全模式2、安全模式下进入Windows系统桌面后&#xff0c;按住“winR”打开运行窗口&#xff0c;输入“services.msc”打开服务设置3、在服务界面&#xff0c;选中…...

    2022/11/19 21:17:18
  27. 错误使用 reshape要执行 RESHAPE,请勿更改元素数目。

    %读入6幅图像&#xff08;每一幅图像的大小是564*564&#xff09; f1 imread(WashingtonDC_Band1_564.tif); subplot(3,2,1),imshow(f1); f2 imread(WashingtonDC_Band2_564.tif); subplot(3,2,2),imshow(f2); f3 imread(WashingtonDC_Band3_564.tif); subplot(3,2,3),imsho…...

    2022/11/19 21:17:16
  28. 配置 已完成 请勿关闭计算机,win7系统关机提示“配置Windows Update已完成30%请勿关闭计算机...

    win7系统关机提示“配置Windows Update已完成30%请勿关闭计算机”问题的解决方法在win7系统关机时如果有升级系统的或者其他需要会直接进入一个 等待界面&#xff0c;在等待界面中我们需要等待操作结束才能关机&#xff0c;虽然这比较麻烦&#xff0c;但是对系统进行配置和升级…...

    2022/11/19 21:17:15
  29. 台式电脑显示配置100%请勿关闭计算机,“准备配置windows 请勿关闭计算机”的解决方法...

    有不少用户在重装Win7系统或更新系统后会遇到“准备配置windows&#xff0c;请勿关闭计算机”的提示&#xff0c;要过很久才能进入系统&#xff0c;有的用户甚至几个小时也无法进入&#xff0c;下面就教大家这个问题的解决方法。第一种方法&#xff1a;我们首先在左下角的“开始…...

    2022/11/19 21:17:14
  30. win7 正在配置 请勿关闭计算机,怎么办Win7开机显示正在配置Windows Update请勿关机...

    置信有很多用户都跟小编一样遇到过这样的问题&#xff0c;电脑时发现开机屏幕显现“正在配置Windows Update&#xff0c;请勿关机”(如下图所示)&#xff0c;而且还需求等大约5分钟才干进入系统。这是怎样回事呢&#xff1f;一切都是正常操作的&#xff0c;为什么开时机呈现“正…...

    2022/11/19 21:17:13
  31. 准备配置windows 请勿关闭计算机 蓝屏,Win7开机总是出现提示“配置Windows请勿关机”...

    Win7系统开机启动时总是出现“配置Windows请勿关机”的提示&#xff0c;没过几秒后电脑自动重启&#xff0c;每次开机都这样无法进入系统&#xff0c;此时碰到这种现象的用户就可以使用以下5种方法解决问题。方法一&#xff1a;开机按下F8&#xff0c;在出现的Windows高级启动选…...

    2022/11/19 21:17:12
  32. 准备windows请勿关闭计算机要多久,windows10系统提示正在准备windows请勿关闭计算机怎么办...

    有不少windows10系统用户反映说碰到这样一个情况&#xff0c;就是电脑提示正在准备windows请勿关闭计算机&#xff0c;碰到这样的问题该怎么解决呢&#xff0c;现在小编就给大家分享一下windows10系统提示正在准备windows请勿关闭计算机的具体第一种方法&#xff1a;1、2、依次…...

    2022/11/19 21:17:11
  33. 配置 已完成 请勿关闭计算机,win7系统关机提示“配置Windows Update已完成30%请勿关闭计算机”的解决方法...

    今天和大家分享一下win7系统重装了Win7旗舰版系统后&#xff0c;每次关机的时候桌面上都会显示一个“配置Windows Update的界面&#xff0c;提示请勿关闭计算机”&#xff0c;每次停留好几分钟才能正常关机&#xff0c;导致什么情况引起的呢&#xff1f;出现配置Windows Update…...

    2022/11/19 21:17:10
  34. 电脑桌面一直是清理请关闭计算机,windows7一直卡在清理 请勿关闭计算机-win7清理请勿关机,win7配置更新35%不动...

    只能是等着&#xff0c;别无他法。说是卡着如果你看硬盘灯应该在读写。如果从 Win 10 无法正常回滚&#xff0c;只能是考虑备份数据后重装系统了。解决来方案一&#xff1a;管理员运行cmd&#xff1a;net stop WuAuServcd %windir%ren SoftwareDistribution SDoldnet start WuA…...

    2022/11/19 21:17:09
  35. 计算机配置更新不起,电脑提示“配置Windows Update请勿关闭计算机”怎么办?

    原标题&#xff1a;电脑提示“配置Windows Update请勿关闭计算机”怎么办&#xff1f;win7系统中在开机与关闭的时候总是显示“配置windows update请勿关闭计算机”相信有不少朋友都曾遇到过一次两次还能忍但经常遇到就叫人感到心烦了遇到这种问题怎么办呢&#xff1f;一般的方…...

    2022/11/19 21:17:08
  36. 计算机正在配置无法关机,关机提示 windows7 正在配置windows 请勿关闭计算机 ,然后等了一晚上也没有关掉。现在电脑无法正常关机...

    关机提示 windows7 正在配置windows 请勿关闭计算机 &#xff0c;然后等了一晚上也没有关掉。现在电脑无法正常关机以下文字资料是由(历史新知网www.lishixinzhi.com)小编为大家搜集整理后发布的内容&#xff0c;让我们赶快一起来看一下吧&#xff01;关机提示 windows7 正在配…...

    2022/11/19 21:17:05
  37. 钉钉提示请勿通过开发者调试模式_钉钉请勿通过开发者调试模式是真的吗好不好用...

    钉钉请勿通过开发者调试模式是真的吗好不好用 更新时间:2020-04-20 22:24:19 浏览次数:729次 区域: 南阳 > 卧龙 列举网提醒您:为保障您的权益,请不要提前支付任何费用! 虚拟位置外设器!!轨迹模拟&虚拟位置外设神器 专业用于:钉钉,外勤365,红圈通,企业微信和…...

    2022/11/19 21:17:05
  38. 配置失败还原请勿关闭计算机怎么办,win7系统出现“配置windows update失败 还原更改 请勿关闭计算机”,长时间没反应,无法进入系统的解决方案...

    前几天班里有位学生电脑(windows 7系统)出问题了&#xff0c;具体表现是开机时一直停留在“配置windows update失败 还原更改 请勿关闭计算机”这个界面&#xff0c;长时间没反应&#xff0c;无法进入系统。这个问题原来帮其他同学也解决过&#xff0c;网上搜了不少资料&#x…...

    2022/11/19 21:17:04
  39. 一个电脑无法关闭计算机你应该怎么办,电脑显示“清理请勿关闭计算机”怎么办?...

    本文为你提供了3个有效解决电脑显示“清理请勿关闭计算机”问题的方法&#xff0c;并在最后教给你1种保护系统安全的好方法&#xff0c;一起来看看&#xff01;电脑出现“清理请勿关闭计算机”在Windows 7(SP1)和Windows Server 2008 R2 SP1中&#xff0c;添加了1个新功能在“磁…...

    2022/11/19 21:17:03
  40. 请勿关闭计算机还原更改要多久,电脑显示:配置windows更新失败,正在还原更改,请勿关闭计算机怎么办...

    许多用户在长期不使用电脑的时候&#xff0c;开启电脑发现电脑显示&#xff1a;配置windows更新失败&#xff0c;正在还原更改&#xff0c;请勿关闭计算机。。.这要怎么办呢&#xff1f;下面小编就带着大家一起看看吧&#xff01;如果能够正常进入系统&#xff0c;建议您暂时移…...

    2022/11/19 21:17:02
  41. 还原更改请勿关闭计算机 要多久,配置windows update失败 还原更改 请勿关闭计算机,电脑开机后一直显示以...

    配置windows update失败 还原更改 请勿关闭计算机&#xff0c;电脑开机后一直显示以以下文字资料是由(历史新知网www.lishixinzhi.com)小编为大家搜集整理后发布的内容&#xff0c;让我们赶快一起来看一下吧&#xff01;配置windows update失败 还原更改 请勿关闭计算机&#x…...

    2022/11/19 21:17:01
  42. 电脑配置中请勿关闭计算机怎么办,准备配置windows请勿关闭计算机一直显示怎么办【图解】...

    不知道大家有没有遇到过这样的一个问题&#xff0c;就是我们的win7系统在关机的时候&#xff0c;总是喜欢显示“准备配置windows&#xff0c;请勿关机”这样的一个页面&#xff0c;没有什么大碍&#xff0c;但是如果一直等着的话就要两个小时甚至更久都关不了机&#xff0c;非常…...

    2022/11/19 21:17:00
  43. 正在准备配置请勿关闭计算机,正在准备配置windows请勿关闭计算机时间长了解决教程...

    当电脑出现正在准备配置windows请勿关闭计算机时&#xff0c;一般是您正对windows进行升级&#xff0c;但是这个要是长时间没有反应&#xff0c;我们不能再傻等下去了。可能是电脑出了别的问题了&#xff0c;来看看教程的说法。正在准备配置windows请勿关闭计算机时间长了方法一…...

    2022/11/19 21:16:59
  44. 配置失败还原请勿关闭计算机,配置Windows Update失败,还原更改请勿关闭计算机...

    我们使用电脑的过程中有时会遇到这种情况&#xff0c;当我们打开电脑之后&#xff0c;发现一直停留在一个界面&#xff1a;“配置Windows Update失败&#xff0c;还原更改请勿关闭计算机”&#xff0c;等了许久还是无法进入系统。如果我们遇到此类问题应该如何解决呢&#xff0…...

    2022/11/19 21:16:58
  45. 如何在iPhone上关闭“请勿打扰”

    Apple’s “Do Not Disturb While Driving” is a potentially lifesaving iPhone feature, but it doesn’t always turn on automatically at the appropriate time. For example, you might be a passenger in a moving car, but your iPhone may think you’re the one dri…...

    2022/11/19 21:16:57