open ssl certificate (https) for hotspot mikrotik

20
Open SSL Certificate (HTTPS) for Mikrotik Hotspot Login 1

Upload: aldi-nor-fahrudin

Post on 15-Jul-2015

3.891 views

Category:

Education


16 download

TRANSCRIPT

Page 1: Open ssl certificate (https) for hotspot mikrotik

Open SSL Certificate (HTTPS) for

Mikrotik Hotspot Login

1

Page 2: Open ssl certificate (https) for hotspot mikrotik

About me

Aldi Nor Fahruin

Using Mikrotik since 2012

Freelance at PT Proxis Indonesia Solution

CV. Cipta Satmedia

Universitas Teknologi Yogyakarta

Certification :

MTCNA (Mikrotik Certified Network Associate) 2014

2

Page 3: Open ssl certificate (https) for hotspot mikrotik

Digital Certificate Infrastructur

and Concept

3

Page 4: Open ssl certificate (https) for hotspot mikrotik

Digital Certified Concept

4

Subcriber feedback

Digital certificate -> identity card Certificate Authority -> sovereign issued a certificate/ Government Subcriber - > User Request CSR (Certified signing request) -> Proposal

Page 5: Open ssl certificate (https) for hotspot mikrotik

Self-Signed Certificate

I want to use https for login but do not have the money

you can use a free application openssl

5

(CA)

Page 6: Open ssl certificate (https) for hotspot mikrotik

Public Key

Page 7: Open ssl certificate (https) for hotspot mikrotik

Difference Self-Signed Certificate and Signed by

Certificate Authority

Self-Signed Certified

Signed by

Certificate Authority

7

Page 8: Open ssl certificate (https) for hotspot mikrotik

HTTP vs HTTPS

8

Page 9: Open ssl certificate (https) for hotspot mikrotik

By default Mikrtotik hotspot login use protocol http

Page 10: Open ssl certificate (https) for hotspot mikrotik

Mikrotik Hotspot Feature

10

Page 11: Open ssl certificate (https) for hotspot mikrotik

Lab Demo

11

Page 12: Open ssl certificate (https) for hotspot mikrotik

1. Generate new private key # openssl genrsa -des3 -out hotspot.key 1024

12

Page 13: Open ssl certificate (https) for hotspot mikrotik

2. Generate certificate signing request (CSR)

# openssl req -new -key hotspot.key -out hotspot.csr

Will be made file hotspot.csr based hotspot.key

Page 14: Open ssl certificate (https) for hotspot mikrotik

3. Generate certficate signing request (CSR) based on exsisting certified openssl x509 -req -days 10000 -in hotspot.csr -signkey hotspot.key -out hotspot.crt

Will make file certificate ssl hotspot.crt based on points one and two

4. Upload file hotspot.key and hotspot.crt to Mikrotik router

Mikrotik by using FTP

14

Page 15: Open ssl certificate (https) for hotspot mikrotik

4. installation certified at Mikrotik Router 5. see the results of installasi /Certficate Print

15

Page 16: Open ssl certificate (https) for hotspot mikrotik

6. Plug connection www-ssl with certificate cert1

who finished in import

/ip service set www-ssl certificate=cert1

Page 17: Open ssl certificate (https) for hotspot mikrotik

7. Create Hostpot Mikrotik

17

Page 18: Open ssl certificate (https) for hotspot mikrotik

7. Make sure server profile hotspot can be connected with

https and certificate cert1

18

Page 19: Open ssl certificate (https) for hotspot mikrotik

8. then try to access the hotspot

Page 20: Open ssl certificate (https) for hotspot mikrotik

[email protected]

+62 8564 3904 438

Aldi N Fahrudin

20