HTTPS principle:
The browser requests the Public Key Certificate of the server, and the server sends the registered certificate to the client. The client verifies the validity of the certificate from the CA.
Includes the public key, server URL, and some information. After verification is completed, the client generates a string of instant codes and sends them to the server using public key encryption as symmetric encryption.
Key.
The OpenSSL tool generates root certificates, public-private key pairs (key. Cer key. Pam), certificate request files (key-req.csr ). The public key is a file ending with. CER and the private key is a file ending with. Pam. The certificate request file is used to be issued to an individual or company requesting a public/private key pair. Generate a public key for an individual or company using the signature of the root certificate,
The root public/private key pair is generated by OpenSSL.
Principles of OpenSSL and https