{"id":217,"date":"2018-03-23T13:17:44","date_gmt":"2018-03-23T04:17:44","guid":{"rendered":"https:\/\/blog.claris.cloud\/?p=128"},"modified":"2021-06-16T18:12:02","modified_gmt":"2021-06-16T09:12:02","slug":"prism-%e3%81%ab-lets-encrypt-%e3%81%a7%e5%8f%96%e5%be%97%e3%81%97%e3%81%9fssl%e8%a8%bc%e6%98%8e%e6%9b%b8%e3%82%92%e9%81%a9%e7%94%a8%e3%81%99%e3%82%8b","status":"publish","type":"post","link":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/prism-%e3%81%ab-lets-encrypt-%e3%81%a7%e5%8f%96%e5%be%97%e3%81%97%e3%81%9fssl%e8%a8%bc%e6%98%8e%e6%9b%b8%e3%82%92%e9%81%a9%e7%94%a8%e3%81%99%e3%82%8b\/","title":{"rendered":"Prism \u306b Let&#8217;s Encrypt \u3067\u53d6\u5f97\u3057\u305fSSL\u8a3c\u660e\u66f8\u3092\u9069\u7528\u3059\u308b"},"content":{"rendered":"<h3 class=\"style3a\">Prism\u306eSSL\u8a3c\u660e\u66f8<\/h3>\n<p>\u3053\u3093\u306b\u3061\u306f\u3002\u30af\u30e9\u30e9\u306e\u5409\u6751\u3067\u3059\u3002<\/p>\n<p>Prism\u3092\u30c7\u30d5\u30a9\u30eb\u30c8\u3067\u4f7f\u3063\u3066\u3044\u308b\u3068\u3001SSL\u8a3c\u660e\u66f8\u306e\u30a8\u30e9\u30fc\u304c\u51fa\u3066\u3057\u307e\u3044\u30ab\u30c3\u30b3\u3088\u304f\u3042\u308a\u307e\u305b\u3093\u3002<\/p>\n<p>\u3053\u308c\u306f\u30c7\u30d5\u30a9\u30eb\u30c8\u3067\u306fPrism\u306b\u300c*.nutanix.local\u300d\u3068\u3044\u3046SSL\u8a3c\u660e\u66f8\u304c\u8a2d\u5b9a\u3055\u308c\u3066\u3044\u308b\u305f\u3081\u3067\u3001 Nutanix\u306e\u30c9\u30ad\u30e5\u30e1\u30f3\u30c8\u3092\u898b\u308b\u3068\u3053\u306eSSL\u8a3c\u660e\u66f8\u306f\u81ea\u7531\u306b\u5909\u66f4\u3067\u304d\u308b\u3088\u3046\u3067\u3059\u3002<\/p>\n<p>\u307e\u305f\u3001\u72ec\u81eaSSL\u8a3c\u660e\u66f8\u306b\u5909\u66f4\u3059\u308b\u3053\u3068\u3092\u63a8\u5968\u3057\u3066\u3044\u307e\u3059\u3002<\/p>\n<blockquote><p><span class=\"notetitle\">Note:<\/span>\u00a0Nutanix recommends that customers replace the default self-signed certificate with a CA signed certificate. The\u00a0<a class=\"xref\" href=\"https:\/\/portal.nutanix.com\/#\/page\/kbs\/details?targetId=kA0600000008hk3CAA\" target=\"_blank\" rel=\"noopener noreferrer\" shape=\"rect\">Controller VM Security Operations Guide<\/a>\u00a0includes more information about certificates, such as generating a private key and certificate signing request (CSR).<\/p><\/blockquote>\n<p>\u3068\u3044\u3046\u308f\u3051\u3067\u4eca\u56de\u306f\u3001Let&#8217;s Encrypt \u3092 Route53 \u306e TXT\u30ec\u30b3\u30fc\u30c9\u8a8d\u8a3c\u3067SSL\u8a3c\u660e\u66f8\u3092\u53d6\u5f97\u3057\u3066\u3001Prsim \u306b\u8a2d\u5b9a\u3059\u308b\u307e\u3067\u3092\u3054\u7d39\u4ecb\u3057\u307e\u3059\u3002<\/p>\n<p>&nbsp;<\/p>\n<h3 class=\"style3a\">Route53\u306e\u8a2d\u5b9a<\/h3>\n<p>TXT\u30ec\u30b3\u30fc\u30c9\u306e\u8a8d\u8a3c\u306f\u7279\u306b Route53 \u3067\u306a\u304f\u3066\u3082\u3088\u3044\u306e\u3067\u3059\u304c\u3001\u81ea\u52d5\u5316\u3068\u3044\u3046\u90e8\u5206\u3092\u8003\u616e\u3057\u3066 certbot\u3068\u306e\u76f8\u6027\u306e\u826f\u3055\u3067\u9078\u3073\u307e\u3057\u305f\u3002<\/p>\n<p>Route53\u3063\u3066\u306a\u306b\uff1f\u3068\u3044\u3046\u65b9\u306f\u3053\u3061\u3089\u3092\u3069\u3046\u305e\u3002<\/p>\n<p><a href=\"https:\/\/aws.amazon.com\/jp\/route53\/\" target=\"_blank\" rel=\"noopener noreferrer\">Amazon Route 53<\/a><\/p>\n<h4 class=\"style4a\">Hosted Zones\u306b\u30c9\u30e1\u30a4\u30f3\u767b\u9332<\/h4>\n<p>\u307e\u305a\u306fRoute53\u306b\u30c9\u30e1\u30a4\u30f3\u3092Hosted zones\u767b\u9332\u3057\u307e\u3057\u3087\u3046\u3002\u7c21\u5358\u3067\u3059\u3002AWS\u30de\u30cd\u30b8\u30e1\u30f3\u30c8\u30b3\u30f3\u30bd\u30fc\u30eb\u304b\u3089\u30dd\u30c1\u3063\u3068\u306a\u3002<\/p>\n<p>Hosted zones \u306b\u767b\u9332\u3059\u308c\u3070\u3001NS\u30ec\u30b3\u30fc\u30c9\u3068SOA\u30ec\u30b3\u30fc\u30c9\u304c\u51fa\u6765\u307e\u3059\u306e\u3067\u3001\u305d\u308c\u3060\u3051\u3067OK\u3067\u3059\u3002<\/p>\n<p>&nbsp;<\/p>\n<h4 class=\"style4a\">\u30c9\u30e1\u30a4\u30f3\u306e\u30ec\u30b8\u30b9\u30c8\u30e9\u306bDNS\u767b\u9332<\/h4>\n<p>\u6b21\u306b\u3001\u30c9\u30e1\u30a4\u30f3\u306e\u30ec\u30b8\u30b9\u30c8\u30e9\u306bRoute53\u3067\u8868\u793a\u3055\u308c\u308b\u30cd\u30fc\u30e0\u30b5\u30fc\u30d0\u3092\u767b\u9332\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<p>\u3053\u3053\u306f\u5404\u30ec\u30b8\u30b9\u30c8\u30e9\u306b\u3088\u3063\u3066\u64cd\u4f5c\u304c\u5909\u308f\u308b\u3068\u601d\u3046\u306e\u3067\u3001\u5272\u611b\u3057\u307e\u3059\u3002<\/p>\n<p>&nbsp;<\/p>\n<h4 class=\"style4a\">Route53\u3092\u64cd\u4f5c\u3059\u308bAMI\u30e6\u30fc\u30b6\u4f5c\u6210<\/h4>\n<p>AWS\u3067\u306f\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u3092\u8003\u616e\u3057\u3066\u5fc5\u8981\u306aAWS\u30ea\u30bd\u30fc\u30b9\u306e\u307f\u3092\u6271\u3048\u308b\u6a29\u9650\u30e6\u30fc\u30b6\u3092\u4f5c\u308a\u307e\u3059\u3002\u4eca\u56de\u306f\u3001Route53\u306b\u767b\u9332\u3057\u305f\u30c9\u30e1\u30a4\u30f3\u306e\u307f\u6271\u3048\u308bAMI\u30e6\u30fc\u30b6\u3092\u4f5c\u308a\u307e\u3057\u3087\u3046\u3002<\/p>\n<p>\u8a2d\u5b9a\u30dd\u30ea\u30b7\u30fc\u306e\u30b5\u30f3\u30d7\u30eb\u306f\u3053\u3053\u306b\u3042\u308a\u307e\u3059\u3002<\/p>\n<p><a href=\"https:\/\/github.com\/certbot\/certbot\/blob\/master\/certbot-dns-route53\/examples\/sample-aws-policy.json\" target=\"_blank\" rel=\"noopener noreferrer\">https:\/\/github.com\/certbot\/certbot\/blob\/master\/certbot-dns-route53\/examples\/sample-aws-policy.json<\/a><\/p>\n<p>\u4ee5\u4e0b\u306e\u00a0YOURHOSTEDZONEID \u3092 Route53 \u306b\u8868\u793a\u3055\u308c\u308bHosted Zone ID\u306b\u5909\u66f4\u3059\u308b\u3053\u3068\u3092\u5fd8\u308c\u306a\u3044\u3067\u304f\u3060\u3055\u3044\u3002<\/p>\n<pre>{\r\n    \"Version\": \"2012-10-17\",\r\n    \"Id\": \"certbot-dns-route53 sample policy\",\r\n    \"Statement\": [\r\n        {\r\n            \"Effect\": \"Allow\",\r\n            \"Action\": [\r\n                \"route53:ListHostedZones\",\r\n                \"route53:GetChange\"\r\n            ],\r\n            \"Resource\": [\r\n                \"*\"\r\n            ]\r\n        },\r\n        {\r\n            \"Effect\" : \"Allow\",\r\n            \"Action\" : [\r\n                \"route53:ChangeResourceRecordSets\"\r\n            ],\r\n            \"Resource\" : [\r\n                \"arn:aws:route53:::hostedzone\/YOURHOSTEDZONEID\"\r\n            ]\r\n        }\r\n    ]\r\n}<\/pre>\n<p>\u3053\u3053\u3067\u4f5c\u6210\u3057\u305fAWS\u306e\u30a2\u30af\u30bb\u30b9\u30ad\u30fc ID\u3068\u30b7\u30fc\u30af\u30ec\u30c3\u30c8\u30ad\u30fc\u3092\u5229\u7528\u3057\u3066\u3001\u5b9f\u884c\u74b0\u5883\u304b\u3089Route53\u3092\u64cd\u4f5c\u3057\u3066\u3044\u304d\u307e\u3059\u3002<\/p>\n<p>&nbsp;<\/p>\n<h3 class=\"style3a\">\u5b9f\u884c\u74b0\u5883\u306e\u8a2d\u5b9a<\/h3>\n<p>\u3055\u3066\u3001AWS\u306e\u8a2d\u5b9a\u304c\u7d42\u308f\u3063\u305f\u306e\u3067\u3001\u6b21\u306f\u5b9f\u884c\u74b0\u5883\u3092\u6574\u5099\u3057\u3066\u3044\u304d\u307e\u3059\u3002<\/p>\n<p>\u79c1\u306e\u5b9f\u884c\u74b0\u5883\u306f\u4ee5\u4e0b\u306e\u901a\u308a\u3067\u3059\u3002<\/p>\n<table style=\"width: 66.6666%; border-collapse: collapse; background-color: #d9d7d7; border-style: solid;\" border=\"1\">\n<tbody>\n<tr>\n<td style=\"width: 33.3333%;\">OS<\/td>\n<td style=\"width: 33.3333%;\">Ubuntu 16.04.3 LTS (Bash on Windows)<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 33.3333%;\">Python<\/td>\n<td style=\"width: 33.3333%;\">python 2.7<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h4><\/h4>\n<h4 class=\"style4a\">aws cli \u30a4\u30f3\u30b9\u30c8\u30fc\u30eb<\/h4>\n<p>apt\u3067\u3082\u3001github\u304b\u3089\u3067\u3082\u3001pip\u3067\u3082\u306a\u3093\u3067\u3082\u826f\u3044\u3067\u3059\u3002<\/p>\n<p>[bash]<\/p>\n<p>sudo apt install awscli<br \/>\naws configure<\/p>\n<p>[\/bash]<\/p>\n<p>\u6ce8\u610f\u70b9\u3068\u3057\u3066\u306f\u3001aws configure \u306e\u30c7\u30d5\u30a9\u30eb\u30c8\u30e6\u30fc\u30b6\u8a2d\u5b9a\u3067\u3001\u5148\u307b\u3069\u4f5c\u6210\u3057\u305fAMI\u30e6\u30fc\u30b6\u3092\u8a2d\u5b9a\u3057\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<p>\u3053\u306e\u5f8c\u306e\u4f5c\u696d\u3067\u3001&#8211;profile \u30aa\u30d7\u30b7\u30e7\u30f3\u3067\u306e\u30e6\u30fc\u30b6\u5207\u66ff\u306f\u60f3\u5b9a\u3057\u3066\u306a\u3044\u3067\u3059\u3002<\/p>\n<p>&nbsp;<\/p>\n<h4 class=\"style4a\">certbot \u30a4\u30f3\u30b9\u30c8\u30fc\u30eb<\/h4>\n<p>github\u304b\u3089\u6700\u65b0\u7248\u3092\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u3066\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3057\u307e\u3059\u3002<\/p>\n<p>certbot\u306fSSL\u8a3c\u660e\u66f8\u306e\u66f4\u65b0\u306e\u81ea\u52d5\u5316\u306e\u305f\u3081\u306b\u3001crontab \u3092\u5229\u7528\u3057\u307e\u3059\u3002<\/p>\n<p>\u305d\u306e\u305f\u3081\u3001root \u30e6\u30fc\u30b6\u3067\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3001\u4f5c\u696d\u5b9f\u65bd\u3057\u307e\u3057\u3087\u3046\u3002<\/p>\n<p>[bash]<\/p>\n<p>git clone https:\/\/github.com\/certbot\/certbot<br \/>\ncd certbot<br \/>\n.\/tools\/venv.sh<br \/>\nsource venv\/bin\/activate<\/p>\n<p>[\/bash]<\/p>\n<p>&nbsp;<\/p>\n<h3 class=\"style3a\">SSL\u8a3c\u660e\u66f8\u306e\u53d6\u5f97<\/h3>\n<p>\u3088\u3046\u3084\u304f\u74b0\u5883\u304c\u6574\u3044\u307e\u3057\u305f\uff01\u3053\u3053\u307e\u3067\u6765\u305f\u3089\u3082\u3046\u4e00\u606f\u3067\u3059\u3002<\/p>\n<p>[bash]<\/p>\n<p>## \u4f5c\u696d\u30c7\u30a3\u30ec\u30af\u30c8\u30ea\u3092\u4f5c\u6210\u3002<br \/>\nmkdir ~\/cb-work<\/p>\n<p>## \u304a\u307e\u3058\u306a\u3044\u3002<br \/>\n## \u79c1\u306e\u74b0\u5883\u3067\u306f\u3053\u308c\u3092\u3084\u3089\u306a\u3044\u3068 openssl \u306e\u30e9\u30a4\u30d6\u30e9\u30ea\u8aad\u307f\u8fbc\u307f\u30a8\u30e9\u30fc\u304c\u51fa\u307e\u3057\u305f\u3002<br \/>\nsudo execstack -c ~\/certbot\/venv\/lib\/python2.7\/site-packages\/cryptography\/hazmat\/bindings\/_openssl.so<\/p>\n<p>## SSL\u8a3c\u660e\u66f8\u306e\u767a\u884c<\/p>\n<p>## 1FQDN test.clara.ne.jp \u3092\u7df4\u7fd2\u3067\u767a\u884c\u3059\u308b\u5834\u5408<br \/>\ncertbot &#8211;config-dir ~\/cb-work &#8211;work-dir ~\/cb-work &#8211;logs-dir ~\/cb-work certonly &#8211;server https:\/\/acme-v02.api.letsencrypt.org\/directory -a dns-route53 &#8211;email \u30e1\u30fc\u30eb\u30a2\u30c9\u30ec\u30b9 &#8211;agree-tos &#8211;no-eff-email -d &#8216;test.clara.ne.jp&#8217; -d &#8216;clara.ne.jp&#8217;<\/p>\n<p># \u30ef\u30a4\u30eb\u30c9\u30ab\u30fc\u30c9 *.clara.ne.jp \u3092\u672c\u756a\u3067\u767a\u884c\u3059\u308b\u5834\u5408<br \/>\ncertbot &#8211;config-dir ~\/cb-work &#8211;work-dir ~\/cb-work &#8211;logs-dir ~\/cb-work certonly &#8211;server https:\/\/acme-v02.api.letsencrypt.org\/directory -a dns-route53 &#8211;email \u30e1\u30fc\u30eb\u30a2\u30c9\u30ec\u30b9 &#8211;agree-tos &#8211;no-eff-email -d &#8216;*.clara.ne.jp&#8217; -d &#8216;clara.ne.jp&#8217;<\/p>\n<p>[\/bash]<\/p>\n<p>\u3057\u3070\u3089\u304f\u5f85\u3064\u3068\u30fb\u30fb\u30fb<\/p>\n<p>[bash]<\/p>\n<p>IMPORTANT NOTES:<br \/>\n&#8211; Congratulations! Your certificate and chain have been saved at:<br \/>\n~\/cb-work\/live\/test.clara.ne.jp\/fullchain.pem<br \/>\nYour key file has been saved at:<br \/>\n~\/cb-work\/live\/test.clara.ne.jp\/privkey.pem<\/p>\n<p>[\/bash]<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>\u51fa\u6765\u307e\u3057\u305f\uff01<\/p>\n<h3 class=\"style3a\">Prism\u306bSSL\u8a3c\u660e\u66f8\u3092\u9069\u7528\u3059\u308b<\/h3>\n<p>Let&#8217;s Encrypt \u3067SSL\u8a3c\u660e\u66f8\u306e\u53d6\u5f97\u304c\u5b8c\u4e86\u3057\u307e\u3057\u305f\u3002\u3042\u3068\u306fPrism\u306b\u3053\u306eSSL\u8a3c\u660e\u66f8\u3092\u8a2d\u5b9a\u3057\u3066\u3042\u3052\u307e\u3057\u3087\u3046\u3002<\/p>\n<h4 class=\"style4a\">\u30a4\u30f3\u30dd\u30fc\u30c8\u306b\u5fc5\u8981\u306a\u9805\u76ee<\/h4>\n<p>Prism\u3078\u306eSSL\u8a3c\u660e\u66f8\u3092\u30a4\u30f3\u30dd\u30fc\u30c8\u3059\u308b\u306b\u306f\u4ee5\u4e0b\u306e4\u3064\u306e\u9805\u76ee\u304c\u5fc5\u8981\u3067\u3059\u3002<\/p>\n<table style=\"height: 100px; width: 100%; border-collapse: collapse; background-color: #d9d0d0;\" border=\"1\">\n<tbody>\n<tr style=\"height: 31px;\">\n<td style=\"width: 50%; height: 31px;\">\u9805\u76ee\u540d<\/td>\n<td style=\"width: 50%; height: 31px;\">\u610f\u5473<\/td>\n<\/tr>\n<tr style=\"height: 30px;\">\n<td style=\"width: 50%; height: 30px;\"><samp class=\"ph codeph\">certificate-path<\/samp><\/td>\n<td style=\"width: 50%; height: 30px;\">\u30b5\u30fc\u30d0\u306eSSL\u8a3c\u660e\u66f8<\/p>\n<p>Let&#8217;s Encrypt \u3067\u53d6\u5f97\u3057\u305f\u00a0cert.pem \u30d5\u30a1\u30a4\u30eb<\/td>\n<\/tr>\n<tr style=\"height: 30px;\">\n<td style=\"width: 50%; height: 30px;\"><samp class=\"ph codeph\">cacertificate-path<\/samp><\/td>\n<td style=\"width: 50%; height: 30px;\">CA\u4e2d\u9593\u8a3c\u660e\u66f8<\/p>\n<p>Let&#8217;s Encrypt \u3067\u53d6\u5f97\u3057\u305f\u00a0chain.pem \u30d5\u30a1\u30a4\u30eb<\/p>\n<p>\u203bRootCA\u8a3c\u660e\u66f8\u3082\u8ffd\u8a18\u3059\u308b<\/td>\n<\/tr>\n<tr style=\"height: 10px;\">\n<td style=\"width: 50%; height: 10px;\"><samp class=\"ph codeph\">key-path<\/samp><\/td>\n<td style=\"width: 50%; height: 10px;\">\u30b5\u30fc\u30d0\u306eSSL\u8a3c\u660e\u66f8\u306e\u79d8\u5bc6\u9375<\/p>\n<p>Let&#8217;s Encrypt \u3067\u53d6\u5f97\u3057\u305f\u00a0privkey.pem \u30d5\u30a1\u30a4\u30eb<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 50%;\"><samp class=\"ph codeph\">key-type<\/samp><\/td>\n<td style=\"width: 50%;\">\u79d8\u5bc6\u9375\u306e\u6697\u53f7\u30bf\u30a4\u30d7\u3068\u9375\u9577<\/p>\n<p>Let&#8217;s Encrypt \u306e\u5834\u5408\u306b\u306f\u3001RSA_2048<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>\u30cf\u30de\u308a\u30dd\u30a4\u30f3\u30c8\u306f\u3001Let&#8217;s Encrypt \u3067\u305d\u306e\u307e\u307e\u53d6\u5f97\u3057\u305fCA\u4e2d\u9593\u8a3c\u660e\u66f8\u3067\u306f\u3001\u30a4\u30f3\u30dd\u30fc\u30c8\u306b\u5931\u6557\u3057\u307e\u3059\u3002<\/p>\n<p>Let&#8217;s Encrypt \u306eRoot\u8a3c\u660e\u66f8\u3092CA\u4e2d\u9593\u8a3c\u660e\u66f8\u306b\u8ffd\u8a18\u3057\u3066\u3042\u3052\u307e\u3057\u3087\u3046\u3002<\/p>\n<p>Let&#8217;s Encrypt \u306eRoot\u8a3c\u660e\u66f8\u306f\u3053\u3061\u3089\u304b\u3089\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3067\u304d\u307e\u3059\u3002<\/p>\n<p><a href=\"https:\/\/letsencrypt.org\/certificates\/\" target=\"_blank\" rel=\"noopener noreferrer\">Root Certificates<\/a><\/p>\n<p>&nbsp;<\/p>\n<h4 class=\"style4a\">Prism\u306b\u30a4\u30f3\u30dd\u30fc\u30c8<\/h4>\n<p>Prism\u304b\u3089\u30a4\u30f3\u30dd\u30fc\u30c8\u3059\u308b\u65b9\u6cd5\u3068CVM\u304b\u3089ncli\u3092\u5229\u7528\u3057\u3066\u30a4\u30f3\u30dd\u30fc\u30c8\u3059\u308b\u65b9\u6cd5\u304c\u3042\u308a\u307e\u3059\u3002<\/p>\n<p>Prism\u304b\u3089\u30a4\u30f3\u30b9\u30c8\u30fc\u30eb\u3059\u308b\u65b9\u6cd5\u306f\u4ee5\u4e0b\u306e\u901a\u308a<\/p>\n<p>Prism\u306e\u8a2d\u5b9a\u30e1\u30cb\u30e5\u30fc\u304b\u3089\u300cSSL\u8a3c\u660e\u66f8\u3092\u9078\u629e\u300d<\/p>\n<p>&nbsp;<\/p>\n<p>\u300cReplace Cetificate\u300d\u3092\u9078\u629e<\/p>\n<p>&nbsp;<\/p>\n<p>\u300cImport Key and Certificate\u300d\u3092\u9078\u629e<\/p>\n<p>&nbsp;<\/p>\n<p>\u5404\u9805\u76ee\u3067\u9078\u629e\u3092\u884c\u3044\u3001\u300cImport Files\u300d\u3067\u5b8c\u4e86\u3067\u3059\u3002\u5b8c\u4e86\u3059\u308b\u3068\u3001Prism\u306e\u30bb\u30c3\u30b7\u30e7\u30f3\u304c\u5207\u308c\u3066\u3001\u518d\u5ea6\u30ed\u30b0\u30a4\u30f3\u304c\u5fc5\u8981\u306b\u306a\u308a\u307e\u3059\u3002<\/p>\n<p>&nbsp;<\/p>\n<p>\u306a\u304a\u3001ncli\u3067\u5b9f\u884c\u3059\u308b\u5834\u5408\u306b\u306f\u3001\u30ef\u30f3\u30e9\u30a4\u30ca\u30fc\u3067\u5b9f\u884c\u53ef\u80fd\u3067\u3059\u3002<\/p>\n<p>[bash]<br \/>\nncli ssl-certificate import certificate-path=&#8221;~\/dev001_claris_clara_ne_jp.pem&#8221; cacertificate-path=&#8221;~\/ca_chain.pem&#8221; key-path=&#8221;~\/dev001_claris_clara_ne_jp_privatekey.pem&#8221; key-type=&#8221;RSA_2048&#8243;<br \/>\nCertificate imported.<br \/>\n[\/bash]<\/p>\n<p>&nbsp;<\/p>\n<p>\u4ee5\u4e0a\u3001Prism\u306bLet&#8217;s Encrypt \u306eSSL\u8a3c\u660e\u66f8\u3092\u9069\u7528\u3059\u308b\u8aac\u660e\u3067\u3057\u305f\u3002<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Prism\u306eSSL\u8a3c\u660e\u66f8 \u3053\u3093\u306b\u3061\u306f\u3002\u30af\u30e9\u30e9\u306e\u5409\u6751\u3067\u3059\u3002 Prism\u3092\u30c7\u30d5\u30a9\u30eb\u30c8\u3067\u4f7f\u3063\u3066\u3044\u308b\u3068\u3001SSL\u8a3c\u660e\u66f8\u306e\u30a8\u30e9\u30fc\u304c\u51fa\u3066\u3057\u307e\u3044\u30ab\u30c3\u30b3\u3088\u304f\u3042\u308a\u307e\u305b\u3093\u3002 \u3053\u308c\u306f\u30c7\u30d5\u30a9\u30eb\u30c8\u3067\u306fPrism\u306b\u300c*.nutanix.local\u300d\u3068 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":8002,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[94,96],"tags":[39,38],"class_list":["post-217","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-nutanix","category-tech","tag-ncli","tag-prism"],"acf":[],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/posts\/217","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/comments?post=217"}],"version-history":[{"count":3,"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/posts\/217\/revisions"}],"predecessor-version":[{"id":8001,"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/posts\/217\/revisions\/8001"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/media\/8002"}],"wp:attachment":[{"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/media?parent=217"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/categories?post=217"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ci.clara.jp\/solution\/clara-cloud\/wp-json\/wp\/v2\/tags?post=217"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}