Last active
May 4, 2025 13:59
-
-
Save xkr47/920ffe94f6a4c171ee59 to your computer and use it in GitHub Desktop.
How to use Letsencrypt certificate & private key with Jetty
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| # input: fullchain.pem and privkey.pem as generated by the "letsencrypt-auto" script when run with | |
| # the "auth" aka "certonly" subcommand | |
| # convert certificate chain + private key to the PKCS#12 file format | |
| openssl pkcs12 -export -out keystore.pkcs12 -in fullchain.pem -inkey privkey.pem | |
| # convert PKCS#12 file into Java keystore format | |
| keytool -importkeystore -srckeystore keystore.pkcs12 -srcstoretype PKCS12 -destkeystore keystore.jks | |
| # don't need the PKCS#12 file anymore | |
| rm keystore.pkcs12 | |
| # Now use "keystore.jks" as keystore in jetty with the keystore password you specfied when you ran | |
| # the "keytool" command |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Hi!
In the letsencrypt-jetty.sh file you show how to get the keystore.jks, but you don't show how to get the truststore.jks and you don't have an example of the configuration in jetty.properties.
Would it be possible to include this?
Reguards,