#openssl req -new -x509 -days 365 -nodes -out stunnel.pem -keyout stunnel.pem
# openssl gendh 512>> stunnel.pem
stunnel
iptables -A INPUT -s 14.156.0.0/16 -p tcp --dport 7071 -j ACCEPT
iptables -I INPUT -s 14.156.0.0/16 -j ACCEPT
wget http://www.stunnel.org/downloads/stunnel-5.25.tar.gz //最新下载地址
$ps -ef | grep stunnel
$cd /usr/local/etc/stunnel/ $scp stunnel.pem [email protected]服务器B的IP:/usr/local/etc/stunnel/
yum install openssl-devel
$cd stunnel-5.01 //编译安装 $./configure $make $make install
$cd /usr/local/etc/stunnel/ //生成密钥 $openssl req -new -x509 -days 365 -nodes -config openssl.cnf -out stunnel.pem -keyout stunnel.pem //如果报错找不到openssl.cnf,可以把-config openssl.cnf去掉,即: $openssl req -new -x509 -days 365 -nodes -out stunnel.pem -keyout stunnel.pem