Skip to content

Instantly share code, notes, and snippets.

@xkr47
Last active May 4, 2025 13:59
Show Gist options
  • Save xkr47/920ffe94f6a4c171ee59 to your computer and use it in GitHub Desktop.
Save xkr47/920ffe94f6a4c171ee59 to your computer and use it in GitHub Desktop.
How to use Letsencrypt certificate & private key with Jetty
# input: fullchain.pem and privkey.pem as generated by the "letsencrypt-auto" script when run with
# the "auth" aka "certonly" subcommand
# convert certificate chain + private key to the PKCS#12 file format
openssl pkcs12 -export -out keystore.pkcs12 -in fullchain.pem -inkey privkey.pem
# convert PKCS#12 file into Java keystore format
keytool -importkeystore -srckeystore keystore.pkcs12 -srcstoretype PKCS12 -destkeystore keystore.jks
# don't need the PKCS#12 file anymore
rm keystore.pkcs12
# Now use "keystore.jks" as keystore in jetty with the keystore password you specfied when you ran
# the "keytool" command
@samic2020
Copy link

Hi!

In the letsencrypt-jetty.sh file you show how to get the keystore.jks, but you don't show how to get the truststore.jks and you don't have an example of the configuration in jetty.properties.

Would it be possible to include this?

Reguards,

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment