I have created what I think is a valid PKCS#12 file using the following command:
openssl pkcs12 -export -out certificate.p12 -inkey C:\Tools\OpenSSL\privkey.pem -in C:\Tools\OpenSSL\cert.pem -certfile C:\Tools\OpenSSL\chain.pem
Is there any better way to make PKCS#12 file?
I am not even sure that I am using the proper files.
I was trying to use the tool Portecle but get stuck when it asks for a password for the file privkey.pem.
Thanks for the help.
End result I would like a a PKCS #12 file to add to the following Plex Network configuration....
Custom certificate location - Path to a PKCS #12 file containing a certificate and private key to enable TLS support on a custom domain.
Custom certificate encryption key
Custom certificate domain - Domain name to be published to plex.tv using your mapped port; must match a name from the custom certificate file.
Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. crt.sh | example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.
That is the right way to create it using openssl. Without providing a password in the command, you should receive a dialog asking for the password, if you want to avoid that you can add the password to your command:
If you want to use a GUI interface, maybe you should use KeyStore Explorer but I think, for your case, openssl is the fast way to create your pkcs12 file.
Keep in mind you should repeat this step every time you renew your certificate so maybe there is something in QNAP and/or your Plex to automate it but I can't advise here because I've never used neither QNAP nor Plex.
Thoughts or ideas on how to automate this process. I am trying to think of the best approach. I might be tricky as the location of the files will potentially change every time they get updated.
\SERVER\Web\nginx\letsencrypt\live\npm-11 is the current location but next time it might be in
\SERVER\Web\nginx\letsencrypt\live\npm-12 or 13 or 15.
I have an Ubuntu 20.04 computer that is always on that might be able to automate this process but it might be over my head to figure out how to do so.