search

Home  >  Q&A  >  body text

docker - 自签署ssl根证书 certificate signed by unknown authority

我在内网一台服务器上搭建了私有CA中心来做自授权ssl证书,将生成的根证书导入浏览器后访问https没有再出现警告,但我在另外一台CentOS上使用curl https://username:password@my.domain.com:8000/也正常,但docker login https://my.domaian.com:8000/时报错:

certificate signed by unknown authority (possibly because of "crypto/rsa: 
verification error" while trying to verify candidate authority certificate "my.domain.com")

问题是,在centos上怎样做才能够信任这个自签署的根证书CA呢

黄舟黄舟2774 days ago985

reply all(1)I'll reply

  • 巴扎黑

    巴扎黑2017-04-21 10:59:06

    docker 有自己的证书存放目录,路径是 /etc/docker/certs.d/. For details on the format, please see the official documentation: https://github.com/docker/docker/blob/master/docs/sources/articles/certificates.md

    In addition, various postures for adding root certificates to the operating system:

    http://kb.kerio.com/product/kerio-connect/server-configuration/ssl-certificates/adding-trusted-root-certificates-to-the-server-1605.html

    reply
    0
  • Cancelreply