I have the mycert.jks file only.
Now i need to extract and generate .key and .crt file and use it in apache httpd server.
SSLCertificateFile /usr/local/apache2/conf/ssl.crt/server.crt
SSLCertificateKeyFile /usr/local/apache2/conf/ssl.key/server.key
Can anybody list the all steps to get this done. I searched but there is no concrete example to understand, mixed and matched steps.
Please suggest!
[EDIT]
Getting error after following steps from below answer.
8/21/2015 9:07 PM] Sohan Bafna:
[Fri Aug 21 15:32:03.008511 2015] [ssl:emerg] [pid 14:tid 140151694997376] AH02562: Failed to configure certificate 0.0.0.0:4545:0 (with chain), check /home/certs/smp_c
ert_key_store.crt
[Fri Aug 21 15:32:03.008913 2015] [ssl:emerg] [pid 14:tid 140151694997376] SSL Library Error: error:0906D06C:PEM routines:PEM_read_bio:no start line (Expecting: TRUSTED
CERTIFICATE) -- Bad file contents or format - or even just a forgotten SSLCertificateKeyFile?
[Fri Aug 21 15:32:03.008959 2015] [ssl:emerg] [pid 14:tid 140151694997376] SSL Library Error: error:140DC009:SSL routines:SSL_CTX_use_certificate_chain_file:PEM lib
Best Answer
.jks is a keystore, which is a Java thing
use keytool binary from Java.
export the .crt:
convert the cert to PEM:
export the key:
convert PKCS12 key to unencrypted PEM:
credits: