trusted_cert_key.crt를 제공 받은 것으로 가정한다.
[haedong@localhost:~]$ sudo mkdir /usr/share/ca-certificates/trusted_cert
[haedong@localhost:~]$ sudo sudo cp ~/trusted_cert_key.crt /usr/share/ca-certificates/trusted_cert
[haedong@localhost:~]$ sudo cp ~/trusted_cert_key.crt /etc/pki/ca-trust/source/anchors/
[haedong@localhost:~]$ sudo dpkg-reconfigure ca-certificates
┌────────────────────────────────────────┤ ca-certificates configuration ├─────────────────────────────────────────┐
│ This package may install new CA (Certificate Authority) certificates when upgrading. You may want to check such │
│ new CA certificates and select only certificates that you trust. │
│ │
│ - yes: new CA certificates will be trusted and installed; │
│ - no : new CA certificates will not be installed by default; │
│ - ask: prompt for each new CA certificate. │
│ │
│ Trust new certificates from certificate authorities? │
│ │
│ yes │
│ no │
│ ask │
│ │
│ │
│ <Ok> │
│ │
└──────────────────────────────────────────────────────────────────────────────────────────────────────────────────┘
┌────────────────────────────────────────┤ ca-certificates configuration ├─────────────────────────────────────────┐
│ This package installs common CA (Certificate Authority) certificates in /usr/share/ca-certificates. . Please │
│ select the certificate authorities you trust so that their certificates are installed into /etc/ssl/certs. They │
│ will be compiled into a single /etc/ssl/certs/ca-certificates.crt file. │
│ │
│ Certificates to activate: │
│ │
│ [\*] mozilla/ACCVRAIZ1.crt ↑ │
│ [\*] mozilla/AC_RAIZ_FNMT-RCM.crt ▮ │
│ [\*] mozilla/Actalis_Authentication_Root_CA.crt ▒ │
│ [\*] mozilla/AffirmTrust_Commercial.crt ▒ │
│ [\*] mozilla/AffirmTrust_Networking.crt ▒ │
│ [\*] mozilla/AffirmTrust_Premium.crt ▒ │
│ [\*] mozilla/AffirmTrust_Premium_ECC.crt ▒ │
│ [\*] mozilla/Amazon_Root_CA_1.crt ▒ │
│ [\*] mozilla/Amazon_Root_CA_2.crt ▒ │
│ [\*] mozilla/Amazon_Root_CA_3.crt ▒ │
│ [\*] mozilla/Amazon_Root_CA_4.crt ▒ │
│ [\*] mozilla/Atos_TrustedRoot_2011.crt ▒ │
│ [\*] mozilla/Autoridad_de_Certificacion_Firmaprofesional_CIF_A62634068.crt ▒ │
│ [\*] mozilla/Baltimore_CyberTrust_Root.crt ▒ │
│ [\*] mozilla/Buypass_Class_2\_Root_CA.crt ▒ │
│ [\*] mozilla/Buypass_Class_3\_Root_CA.crt ▒ │
│ [\*] mozilla/CA_Disig_Root_R2.crt ▒ │
│ [\*] mozilla/Certigna.crt ▒ │
│ [\*] mozilla/Certigna_Root_CA.crt ▒ │
│ [\*] mozilla/certSIGN_ROOT_CA.crt ▒ │
│ [\*] mozilla/certSIGN_Root_CA_G2.crt ▒ │
│ [\*] mozilla/Certum_Trusted_Network_CA_2.crt ▒ │
│ [\*] mozilla/Certum_Trusted_Network_CA.crt ▒ │
│ [\*] mozilla/CFCA_EV_ROOT.crt ▒ │
│ [\*] mozilla/Chambers_of_Commerce_Root\_-\_2008.crt ▒ │
│ [\*] mozilla/Comodo_AAA_Services_root.crt ▒ │
│ [\*] mozilla/COMODO_Certification_Authority.crt ▒ │
│ [\*] mozilla/COMODO_ECC_Certification_Authority.crt ▒ │
│ [\*] mozilla/COMODO_RSA_Certification_Authority.crt ▒ │
│ [\*] mozilla/Cybertrust_Global_Root.crt ▒ │
│ [\*] mozilla/DigiCert_Assured_ID_Root_CA.crt ▒ │
│ [\*] mozilla/DigiCert_Assured_ID_Root_G2.crt ▒ │
│ [\*] mozilla/DigiCert_Assured_ID_Root_G3.crt ▒ │
│ [\*] mozilla/DigiCert_Global_Root_CA.crt ▒ │
│ [\*] mozilla/DigiCert_Global_Root_G2.crt ▒ │
│ [\*] mozilla/DigiCert_Global_Root_G3.crt ▒ │
│ [\*] mozilla/DigiCert_High_Assurance_EV_Root_CA.crt ▒ │
│ [\*] mozilla/DigiCert_Trusted_Root_G4.crt ↓ │
│ │
│ │
│ <Ok> │
│ │
└──────────────────────────────────────────────────────────────────────────────────────────────────────────────────┘
Updating certificates in /etc/ssl/certs...
0 added, 0 removed; done.
Processing triggers for ca-certificates (20210119\~18.04.2) ...
Updating certificates in /etc/ssl/certs...
0 added, 0 removed; done.
Running hooks in /etc/ca-certificates/update.d...
done.
Updating certificates in /etc/ssl/certs...
0 added, 0 removed; done.
Running hooks in /etc/ca-certificates/update.d...
done.
[haedong@localhost:~]$ sudo apt-get install --reinstall ca-certificates
Reading package lists... Done
Building dependency tree
Reading state information... Done
0 upgraded, 0 newly installed, 1 reinstalled, 0 to remove and 156 not upgraded.
Need to get 0 B/145 kB of archives.
After this operation, 0 B of additional disk space will be used.
Preconfiguring packages ...
(Reading database ... 90545 files and directories currently installed.)
Preparing to unpack .../ca-certificates_20210119~18.04.2_all.deb ...
Unpacking ca-certificates (20210119~18.04.2) over (20210119~18.04.2) ...
Setting up ca-certificates (20210119~18.04.2) ...
Updating certificates in /etc/ssl/certs...
0 added, 0 removed; done.
Processing triggers for man-db (2.8.3-2ubuntu0.1) ...
Processing triggers for ca-certificates (20210119~18.04.2) ...
Updating certificates in /etc/ssl/certs...
0 added, 0 removed; done.
Running hooks in /etc/ca-certificates/update.d...
done.
이전 단계 #인증서 설치 수행