From ee41e6e573f538dca42620bb96a1cbe5ad8a2444 Mon Sep 17 00:00:00 2001 From: inference Date: Tue, 30 May 2023 00:42:17 +0100 Subject: [PATCH] Also verify chain of trust from intermediate certificate authority certificate to server certificate. --- security/openssl_certificate_chain.adoc | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/security/openssl_certificate_chain.adoc b/security/openssl_certificate_chain.adoc index 8567bdb..e2f11a7 100644 --- a/security/openssl_certificate_chain.adoc +++ b/security/openssl_certificate_chain.adoc @@ -1,6 +1,6 @@ = OpenSSL Certificate Chain -Version: 0.0.0.7 +Version: 0.0.0.8 This documentation contains the complete set of commands to create a new OpenSSL self-signed @@ -56,3 +56,6 @@ Each key can be encrypted or unencrypted, with multiple encryption options; AES == Verify Server Certificate `openssl x509 -noout -text -in server-crt.pem` + +== Verify Chain of Trust (Intermediate to Server) +`openssl verify -CAfile intermediate-crt.pem server-crt.pem`